CVE-2013-4632: Input Validation
The Huawei Access Router (AR) before V200R002SPC003 allows remote attackers to cause a denial of service (device reset) via a crafted field in a DHCP request, as demonstrated by a request from an IP phone.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-4632?
CVE-2013-4632 is classified as a critical vulnerability due to its potential to allow remote attackers to execute a denial of service on affected devices.
How do I fix CVE-2013-4632?
To mitigate CVE-2013-4632, upgrade the Huawei Access Router firmware to version V200R002SPC003 or later.
Which devices are affected by CVE-2013-4632?
CVE-2013-4632 affects Huawei Access Routers running versions earlier than V200R002SPC003.
What type of attack is CVE-2013-4632 associated with?
CVE-2013-4632 is associated with denial of service attacks that can cause the affected device to reset.
What is the attack vector for CVE-2013-4632?
The attack vector for CVE-2013-4632 involves sending a specially crafted field in a DHCP request.