CVE-2016-6178: Input Validation
Huawei NE40E and CX600 devices with software before V800R007SPH017; PTN 6900-2-M8 devices with software before V800R007SPH019; NE5000E devices with software before V800R006SPH018; and CloudEngine devices 12800 with software before V100R003SPH010 and V100R005 before V100R005SPH006 allow remote attackers with control plane access to cause a denial of service or execute arbitrary code via a crafted packet.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2016-6178?
CVE-2016-6178 has a high severity rating due to the potential for remote attacks on affected devices.
How do I fix CVE-2016-6178?
To fix CVE-2016-6178, upgrade your Huawei NE40E, CX600, NE5000E, PTN 6900-2-M8, or CloudEngine 12800 devices to the patched firmware versions provided by Huawei.
Which devices are affected by CVE-2016-6178?
CVE-2016-6178 affects Huawei NE40E, CX600, NE5000E, PTN 6900-2-M8, and CloudEngine 12800 devices running specific vulnerable firmware versions.
What types of attacks are possible with CVE-2016-6178?
CVE-2016-6178 allows remote attackers to execute unauthorized actions on the vulnerable devices.
Is there an official advisory for CVE-2016-6178?
Yes, there is an official Huawei security advisory detailing the CVE-2016-6178 vulnerability and recommended mitigations.