First published: Thu Apr 25 2019(Updated: )
The gyroscope on Xiaomi Mi 5s devices allows attackers to cause a denial of service (resonance and false data) via a 20.4 kHz audio signal, aka a MEMS ultrasound attack.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Mi 5s Plus Firmware | ||
Xiaomi Mi 5s |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-20823 has a high severity as it can lead to denial of service via a MEMS ultrasound attack on the gyroscope.
To mitigate CVE-2018-20823, it is recommended to avoid exposure to 20.4 kHz audio signals and implement software patches from Xiaomi.
CVE-2018-20823 specifically affects Xiaomi Mi 5s devices.
Yes, CVE-2018-20823 can be triggered remotely using a 20.4 kHz audio signal.
CVE-2018-20823 is classified as a denial of service attack.