RP200 V500R002C00, V600R006C00; TE30 V100R001C10, V500R002C00, V600R006C00; TE40 V500R002C00, V600R006C00; TE50 V500R002C00, V600R006C00; TE60 V100R001C10, V500R002C00, V600R006C00 have an out-of-bounds read vulnerabilities in some Huawei products. Due to insufficient input validation, a remote attacker could exploit these vulnerabilities by sending specially crafted SS7 related packets to the target devices. Successful exploit will cause out-of-bounds read and possibly crash the system.
References
Link | Resource |
---|---|
http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20171101-01-sccpx-en | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
Configuration 2 (hide)
AND |
|
Configuration 3 (hide)
AND |
|
Configuration 4 (hide)
AND |
|
Configuration 5 (hide)
AND |
|
Information
Published : 2017-12-22 09:29
Updated : 2018-01-05 08:19
NVD link : CVE-2017-15319
Mitre link : CVE-2017-15319
JSON object : View
CWE
CWE-125
Out-of-bounds Read
Products Affected
huawei
- te40_firmware
- te60
- rp200
- te30_firmware
- te30
- te50_firmware
- rp200_firmware
- te40
- te50
- te60_firmware