Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.143946
Category:Huawei
Title:Huawei Data Communication: DoS Vulnerability in Multiple Huawei Devices (huawei-sa-20161228-01-rsvp)
Summary:There is a denial of service (DoS) vulnerability in multiple Huawei devices.
Description:Summary:
There is a denial of service (DoS) vulnerability in multiple Huawei devices.

Vulnerability Insight:
There is a denial of service (DoS) vulnerability in multiple Huawei devices. Due to the lack of input validation, a remote attacker may craft a malformed Resource Reservation Protocol(RSVP) packet and send it to the device, causing a few buffer overflows and occasional device restart. (Vulnerability ID: HWPSIRT-2016-07017)Huawei has released software updates to fix this vulnerability. This advisory is available in the linked references.

Vulnerability Impact:
An attacker may exploit this vulnerability to cause the device to restart occasionally.

Affected Software/OS:
S12700 versions V200R005C00 V200R006C00 V200R007C00 V200R008C00

S5700 versions V200R006C00 V200R007C00 V200R008C00

S6700 versions V200R008C00

S7700 versions V200R001C00 V200R002C00 V200R003C00 V200R005C00 V200R006C00 V200R007C00 V200R008C00

S9700 versions V200R001C00 V200R002C00 V200R003C00 V200R005C00 V200R006C00 V200R007C00 V200R008C00

Solution:
See the referenced vendor advisory for a solution.

CVSS Score:
7.8

CVSS Vector:
AV:N/AC:L/Au:N/C:N/I:N/A:C

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2016-8786
BugTraq ID: 95139
http://www.securityfocus.com/bid/95139
CopyrightCopyright (C) 2020 Greenbone Networks GmbH

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.