First published: Tue Nov 24 2015(Updated: )
Huawei eSpace U2980 unified gateway with software before V100R001C10 and U2990 with software before V200R001C10 allow remote authenticated users to cause a denial of service via crafted signaling packets from a registered device.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Huawei eSpace firmware | <=v100r001c02 | |
Huawei eSpace unified gateway U2980 | ||
Huawei eSpace firmware | <=v200r001c02 | |
Huawei eSpace unified gateway U2990 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-8229 has a medium severity rating as it allows remote authenticated users to cause a denial of service.
To fix CVE-2015-8229, upgrade the Huawei eSpace U2980 gateway to software version V100R001C10 or later, and the U2990 to V200R001C10 or later.
CVE-2015-8229 affects Huawei eSpace U2980 and U2990 gateways running software versions prior to V100R001C10 and V200R001C10, respectively.
The impact of CVE-2015-8229 is a denial of service condition that can be triggered by crafted signaling packets from a registered device.
Yes, CVE-2015-8229 can be exploited remotely by authenticated users who send crafted signaling packets.