Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.112687
Category:Huawei
Title:Huawei GaussDB 100 OLTP: Out-of-bounds Read Vulnerability (huawei-sa-20190925-01-database)
Summary:There is an out-of-bounds read vulnerability in the Huawei GaussDB 100 OLTP database; due to the insufficient checks of the specific packet length.
Description:Summary:
There is an out-of-bounds read vulnerability in the Huawei GaussDB 100 OLTP database
due to the insufficient checks of the specific packet length.

Vulnerability Insight:
Attackers can construct invalid packets to attack the active and standby communication channels.

Vulnerability Impact:
Successful exploitation of this vulnerability could allow the attacker to crash the database on the standby node.

Affected Software/OS:
Huawei GaussDB 100 OLTP versions:

- V300R001C00SPC100

- V300R001C00SPC200

- V300R001C00SPC201

Solution:
Update Huawei GaussDB 100 OLTP to version V300R001C00SPC202 to fix the issue.

CVSS Score:
5.4

CVSS Vector:
AV:N/AC:H/Au:N/C:N/I:N/A:C

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2019-5289
http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20190925-01-database-en
CopyrightCopyright (C) 2020 Greenbone Networks GmbH

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.