PocketBook InkPad Color 3 Privilege Escalation Vulnerability

Vulnerability

A privilege escalation vulnerability has been identified in the PocketBook InkPad Color 3 e-reader, specifically in version U743k3.6.8.3671. This vulnerability allows attackers with physical access to the device to escalate privileges to root. The issue arises from an unintended use of a SUID binary, which can be exploited to enable developer mode, providing unauthorized access.

Impact

Exploitation of this vulnerability allows for unauthorized root access on the device.

Reproduction

The vulnerability can be reproduced by first gaining physical access to the device and uploading a malicious application via USB. Once the application is executed, it can exploit the SUID binary 'iv2sh' to create a file that triggers the developer mode. After restarting the device, a USB network interface is established, allowing access to a root shell via SSH.

Remediation

It is recommended that the vendor remove the 'ntpdate' utility from the '/etc/sudoers' configuration file and implement a password requirement for device unlock.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
7.5
exploitability
4.6
remediation
0.0
relevance
0.0
threat
6.4
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.