First published: Mon May 23 2016(Updated: )
Huawei S12700 switches with software before V200R008C00SPC500 and S5700 switches with software before V200R005SPH010, when the debug switch is enabled, allows remote attackers to cause a denial of service or execute arbitrary code via crafted DNS packets.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Huawei S12700 Firmware | ||
Huawei S12700 Firmware | =v200r005c00spc300 | |
Huawei S5700 Firmware | ||
Huawei Campus S5700 firmware | =v200r001c00 | |
Huawei Campus S5700 firmware | =v200r002c00spc100 | |
Huawei Campus S5700 firmware | =v200r003c00spc300 | |
Huawei Campus S5700 firmware | =v200r005c00 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-4087 has been classified as a high severity vulnerability due to its potential for denial of service and arbitrary code execution.
To fix CVE-2016-4087, upgrade to Huawei S12700 firmware version V200R008C00SPC500 or S5700 firmware version V200R005SPH010 or later.
CVE-2016-4087 affects Huawei S12700 switches with software before V200R008C00SPC500 and S5700 switches with software before V200R005SPH010.
An attacker exploiting CVE-2016-4087 can potentially cause a denial of service or execute arbitrary code by sending crafted DNS packets.
CVE-2016-4087 was disclosed on April 27, 2016, in a security advisory by Huawei.