CVE-2015-8084: Input Validation
Huawei USG5500, USG2100, USG2200, and USG5100 unified security gateways with software before V300R001C10SPC600, when "DHCP Snooping" is enabled and either "option82 insert" or "option82 rebuild" is enabled on an interface, allow remote attackers to cause a denial of service (reboot) via crafted DHCP packets.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-8084?
CVE-2015-8084 has a high severity rating as it can cause a denial of service via crafted DHCP packets.
How do I fix CVE-2015-8084?
To fix CVE-2015-8084, upgrade the Huawei Unified Security Gateway firmware to V300R001C10SPC600 or later.
Which devices are affected by CVE-2015-8084?
CVE-2015-8084 affects Huawei USG5500, USG2100, USG2200, and USG5100 unified security gateways with versions before V300R001C10SPC600.
What is DHCP Snooping as it relates to CVE-2015-8084?
DHCP Snooping is a network security feature that validates DHCP messages and is linked to the vulnerability in CVE-2015-8084.
Can CVE-2015-8084 be exploited remotely?
Yes, CVE-2015-8084 can be exploited remotely by attackers sending crafted DHCP packets.