USG9500 with versions of V500R001C30SPC100, V500R001C30SPC200, V500R001C30SPC600, V500R001C60SPC500, V500R005C00SPC100, V500R005C00SPC200 have an information leakage vulnerability. Due to improper processing of the initialization vector used in a specific encryption algorithm, an attacker who gains access to this cryptographic primitive may exploit this vulnerability to cause the value of the confidentiality associated with its use to be diminished.
References
Link | Resource |
---|---|
https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20200115-01-firewall-en | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
Information
Published : 2020-01-21 11:15
Updated : 2020-08-24 10:37
NVD link : CVE-2019-19411
Mitre link : CVE-2019-19411
JSON object : View
CWE
CWE-665
Improper Initialization
Products Affected
huawei
- usg9500
- usg9500_firmware