7.8
CWE
20
Advisory Published
Updated

CVE-2014-8572: Input Validation

First published: Sun Apr 02 2017(Updated: )

Huawei AC6605 with software V200R001C00; AC6605 with software V200R002C00; ACU with software V200R001C00; ACU with software V200R002C00; S2300, S3300, S2700, S3700 with software V100R006C05 and earlier versions; S5300, S5700, S6300, S6700 with software V100R006, V200R001, V200R002, V200R003, V200R005C00SPC300 and earlier versions; S7700, S9300, S9300E, S9700 with software V100R006, V200R001, V200R002, V200R003, V200R005C00SPC300 and earlier versions could allow remote attackers to send a special SSH packet to the VRP device to cause a denial of service.

Credit: psirt@huawei.com

Affected SoftwareAffected VersionHow to fix
Huawei AC6605 firmware=ac6605_v200r001c00
Huawei AC6605 firmware=ac6605_v200r002c00
Huawei AC6605 firmware
Huawei ACU firmware=acu_v200r001c00
Huawei ACU firmware=acu_v200r002c00
Huawei ACU firmware
Huawei S Series Firmware=v100r006c05
Huawei S2300 Firmware
Huawei S2700
Huawei S3300 firmware
Huawei Campus S3700HI
Huawei 5300HI firmware<=v200r005c00spc300
Huawei 5300HI firmware=v100r006
Huawei 5300HI firmware=v200r001
Huawei 5300HI firmware=v200r002
Huawei 5300HI firmware=v200r003
Huawei S5300 firmware
Huawei Campus S5700 firmware<=v200r005c00spc300
Huawei Campus S5700 firmware=v100r006
Huawei Campus S5700 firmware=v200r001
Huawei Campus S5700 firmware=v200r002
Huawei Campus S5700 firmware=v200r003
Huawei S5700 Firmware
Huawei 6700EI firmware<=v200r005c00spc300
Huawei 6700EI firmware=v100r006
Huawei 6700EI firmware=v200r001
Huawei 6700EI firmware=v200r002
Huawei 6700EI firmware=v200r003
Huawei S6700 Firmware
Huawei S6300 Firmware<=v200r005c00spc300
Huawei S6300 Firmware=v100r006
Huawei S6300 Firmware=v200r001
Huawei S6300 Firmware=v200r002
Huawei S6300 Firmware=v200r003
Huawei Campus S6300
Huawei Campus S7700 firmware<=v200r005c00spc300
Huawei Campus S7700 firmware=v100r006
Huawei Campus S7700 firmware=v200r001
Huawei Campus S7700 firmware=v200r002
Huawei Campus S7700 firmware=v200r003
Huawei Campus S7700
Huawei LSW S9700 firmware<=v200r005c00spc300
Huawei LSW S9700 firmware=v100r006
Huawei LSW S9700 firmware=v200r001
Huawei LSW S9700 firmware=v200r002
Huawei LSW S9700 firmware=v200r003
Huawei 9700 Firmware
Huawei Campus S9300 Firmware<=v200r005c00spc300
Huawei Campus S9300 Firmware=v100r006
Huawei Campus S9300 Firmware=v200r001
Huawei Campus S9300 Firmware=v200r002
Huawei Campus S9300 Firmware=v200r003
Huawei Campus S9300
Huawei S9300E firmware<=v200r005c00spc300
Huawei S9300E firmware=v100r006
Huawei S9300E firmware=v200r001
Huawei S9300E firmware=v200r002
Huawei S9300E firmware=v200r003
Huawei Campus S9300E

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Frequently Asked Questions

  • What is the severity of CVE-2014-8572?

    CVE-2014-8572 has a high severity rating due to its potential impact on device integrity and confidentiality.

  • How do I fix CVE-2014-8572?

    To fix CVE-2014-8572, update the affected Huawei devices to the latest firmware versions that address this vulnerability.

  • Which Huawei devices are affected by CVE-2014-8572?

    CVE-2014-8572 affects various Huawei devices including AC6605, S2700, S3700, S5300, and others running specific firmware versions.

  • What types of vulnerabilities does CVE-2014-8572 include?

    CVE-2014-8572 includes vulnerabilities related to improper input validation that can lead to unauthorized access or disruption of services.

  • Is there a workaround for CVE-2014-8572?

    No specific workarounds are recommended for CVE-2014-8572; updating to the latest firmware is the most effective solution.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2025 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203