First published: Fri Dec 22 2017(Updated: )
Huawei S5700 and S6700 with software of V200R005C00 have a DoS vulnerability due to insufficient validation of the Network Quality Analysis (NQA) packets. A remote attacker could exploit this vulnerability by sending malformed NQA packets to the target device. Successful exploitation could make the device restart.
Credit: psirt@huawei.com
Affected Software | Affected Version | How to fix |
---|---|---|
Huawei S5700 Firmware | =v200r005c00 | |
Huawei S5700 | ||
Huawei S6700 Firmware | =v200r005c00 | |
Huawei S6700 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-15324 is a DoS vulnerability in Huawei S5700 and S6700 with software of V200R005C00.
The severity of CVE-2017-15324 is high with a CVSS score of 7.5.
CVE-2017-15324 could allow a remote attacker to cause a Denial of Service (DoS) by sending malformed Network Quality Analysis (NQA) packets to the target device.
CVE-2017-15324 can be exploited by sending malformed NQA packets to the vulnerable Huawei S5700 and S6700 devices.
Yes, a fix for CVE-2017-15324 is available in the V200R005C00 software version for Huawei S5700 and S6700.