CVE 8.6 HIGH

Tesla Telematics Control Unit (TCU) < v2025.14 Authentication Bypass_CVE-2025-34251

8.6 / 10
HIGH
CVSS:4.0/AV:P/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H

Description

Tesla Telematics Control Unit (TCU) firmware prior to v2025.14 contains an authentication bypass vulnerability. The TCU runs the Android Debug Bridge (adbd) as root and, despite a “lockdown” check that disables adb shell, still permits adb push/pull and adb forward. Because adbd is privileged and the device’s USB port is exposed externally, an attacker with physical access can write an arbitrary file to a writable location and then overwrite the kernel’s uevent_helper or /proc/sys/kernel/hotplug entries via ADB, causing the script to be executed with root privileges.

Basic Information

ID CVE-2025-34251
Source VulnCheck
Published Oct 6, 2025 at 23:35

Affected Product

Vendor Tesla
Product Telematics Control Unit (TCU)
Version *
Affected Versions Tesla Telematics Control Unit (TCU) *

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.