First published: Sun Feb 17 2019(Updated: )
On Xiaomi MIX 2 devices with the 4.4.78 kernel, a NULL pointer dereference in the ioctl interface of the device file /dev/elliptic1 or /dev/elliptic0 causes a system crash via IOCTL 0x4008c575 (aka decimal 1074316661).
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Mi Mi Mix 2 Firmware | =4.4.78 | |
Mi Mi Mix 2 | ||
All of | ||
Mi Mi Mix 2 Firmware | =4.4.78 | |
Mi Mi Mix 2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-8413 has a high severity due to its potential to cause system crashes on affected Xiaomi MIX 2 devices.
To fix CVE-2019-8413, users should update the device firmware to a version higher than 4.4.78.
CVE-2019-8413 specifically affects Xiaomi MIX 2 devices running the 4.4.78 kernel.
CVE-2019-8413 is caused by a NULL pointer dereference in the ioctl interface of the device files /dev/elliptic1 or /dev/elliptic0.
Exploiting CVE-2019-8413 can lead to a system crash on vulnerable Xiaomi MIX 2 devices.