Free and open-source vulnerability scanner

Mageni eases for you the vulnerability scanning, assessment, and management process. It is free and open-source.

Install Now

Available for macOS, Windows, and Linux

App screenshot

Huawei Data Communication: Out of Bounds Write Vulnerability in Some Huawei Products (huawei-sa-20211020-01-outofwrite)

Information

Severity

Severity

Medium

Family

Family

Huawei

CVSSv2 Base

CVSSv2 Base

5.0

CVSSv2 Vector

CVSSv2 Vector

AV:N/AC:L/Au:N/C:N/I:N/A:P

Solution Type

Solution Type

Vendor Patch

Created

Created

2 years ago

Modified

Modified

2 years ago

Summary

There is an out of bounds write vulnerability in some Huawei products.

Insight

Insight

The vulnerability is caused by a function of a module that does not properly verify input parameter. Successful exploit could cause out of bounds write leading to a denial of service condition.

Affected Software

Affected Software

IPS Module versions V500R005C00, V500R005C20 NGFW Module versions V500R005C00 NIP6600 versions V500R005C00, V500R005C20 S12700 versions V200R010C00SPC600, V200R011C10SPC500, V200R011C10SPC600, V200R013C00SPC500, V200R019C00SPC200, V200R019C00SPC500, V200R019C10SPC200, V200R020C00, V200R020C10 S1700 versions V200R010C00SPC600, V200R011C10SPC500, V200R011C10SPC600 S2700 versions V200R010C00SPC600, V200R011C10SPC500, V200R011C10SPC600 S5700 versions V200R010C00SPC600, V200R010C00SPC700, V200R011C10SPC500, V200R011C10SPC600, V200R019C00SPC500 S6700 versions V200R010C00SPC600, V200R011C10SPC500, V200R011C10SPC600 S7700 versions V200R010C00SPC600, V200R010C00SPC700, V200R011C10SPC500, V200R011C10SPC600 S9700 versions V200R010C00SPC600, V200R011C10SPC500, V200R011C10SPC600 USG9500 versions V500R005C00, V500R005C20

Detection Method

Detection Method

Checks if a vulnerable version is present on the target host.

Solution

Solution

See the referenced vendor advisory for a solution.

Common Vulnerabilities and Exposures (CVE)