CVE-2014-9697: High severity Huawei Usg9560 Firmware vulnerability
Published Oct 17, 2017
·Updated
Huawei USG9560/9520/9580 before V300R001C01SPC300 allows remote attackers to cause a memory leak or denial of service (memory exhaustion, reboot and MPU switchover) via a crafted website.
Affected Software
9 affected components
Huawei Usg9560 Firmware=v300r001c00
Huawei Usg9560 Firmware=v300r001c01spc100
Huawei USG9560
Huawei Usg9520 Firmware=v300r001c00
Huawei Usg9520 Firmware=v300r001c01spc100
Huawei USG9520
Huawei Usg9580 Firmware=v300r001c00
Huawei Usg9580 Firmware=v300r001c01spc100
Huawei USG9580
Event History
Oct 17, 2017
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2014-9697?
CVE-2014-9697 has a severity rating of 7.5, classified as high.
2
How do I fix CVE-2014-9697?
The fix for CVE-2014-9697 involves upgrading the affected Huawei firmware to versions V300R001C01SPC300 or later.
3
What devices are affected by CVE-2014-9697?
CVE-2014-9697 affects Huawei USG9560, USG9520, and USG9580 devices running specific firmware versions prior to V300R001C01SPC300.
4
What are the consequences of CVE-2014-9697?
CVE-2014-9697 can lead to a memory leak, denial of service, memory exhaustion, device reboot, or MPU switchover.
5
What type of attack does CVE-2014-9697 enable?
CVE-2014-9697 allows remote attackers to exploit the vulnerability via a crafted website.