![]() |
Home ▼ Bookkeeping
Online ▼ Security
Audits ▼
Managed
DNS ▼
About
Order
FAQ
Acceptable Use Policy
Dynamic DNS Clients
Configure Domains Dyanmic DNS Update Password Network
Monitor ▼
Enterprise Package
Advanced Package
Standard Package
Free Trial
FAQ
Price/Feature Summary
Order/Renew
Examples
Configure/Status Alert Profiles | ||
Test ID: | 1.3.6.1.4.1.25623.1.0.112687 |
Category: | Huawei |
Title: | Huawei GaussDB 100 OLTP: Out-of-bounds Read Vulnerability (huawei-sa-20190925-01-database) |
Summary: | There is an out-of-bounds read vulnerability in the Huawei GaussDB 100 OLTP database; due to the insufficient checks of the specific packet length. |
Description: | Summary: There is an out-of-bounds read vulnerability in the Huawei GaussDB 100 OLTP database due to the insufficient checks of the specific packet length. Vulnerability Insight: Attackers can construct invalid packets to attack the active and standby communication channels. Vulnerability Impact: Successful exploitation of this vulnerability could allow the attacker to crash the database on the standby node. Affected Software/OS: Huawei GaussDB 100 OLTP versions: - V300R001C00SPC100 - V300R001C00SPC200 - V300R001C00SPC201 Solution: Update Huawei GaussDB 100 OLTP to version V300R001C00SPC202 to fix the issue. CVSS Score: 5.4 CVSS Vector: AV:N/AC:H/Au:N/C:N/I:N/A:C |
Cross-Ref: |
Common Vulnerability Exposure (CVE) ID: CVE-2019-5289 http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20190925-01-database-en |
Copyright | Copyright (C) 2020 Greenbone Networks GmbH |
This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit. To run a free test of this vulnerability against your system, register below. |