CWE
119
Advisory Published
Updated

CVE-2017-15334: Buffer Overflow

First published: Thu Feb 15 2018(Updated: )

The SIP backup feature in Huawei DP300 V500R002C00, IPS Module V100R001C10, V100R001C20, V100R001C30, V500R001C00, V500R001C20, V500R001C30, V500R001C50, NGFW Module V100R001C10, V100R001C20, V100R001C30, V500R001C00, V500R001C20, V500R002C00, V500R002C10, NIP6300 V500R001C00, V500R001C20, V500R001C30, V500R001C50, NIP6600 V500R001C00, V500R001C20, V500R001C30, V500R001C50, NIP6800 V500R001C50, RP200 V500R002C00, V600R006C00, SVN5600 V200R003C00, V200R003C10, SVN5800 V200R003C00, V200R003C10, SVN5800-C V200R003C00, V200R003C10, SeMG9811 V300R001C01, Secospace USG6300 V100R001C10, V100R001C20, V100R001C30, V500R001C00, V500R001C20, V500R001C30, V500R001C50, Secospace USG6500 V100R001C10, V100R001C20, V100R001C30, V500R001C00, V500R001C20, V500R001C30, V500R001C50, Secospace USG6600 V100R001C00, V100R001C20, V100R001C30, V500R001C00, V500R001C20, V500R001C30, V500R001C50, TE30 V100R001C02, V100R001C10, V500R002C00, V600R006C00, TE40 V500R002C00, V600R006C00, TE50 V500R002C00, V600R006C00, TE60 V100R001C01, V100R001C10, V500R002C00, V600R006C00, USG9500 V500R001C00, V500R001C20, V500R001C30, USG9520 V300R001C01, V300R001C20, USG9560 V300R001C01, V300R001C20, USG9580 V300R001C01, V300R001C20, VP9660 V200R001C02, V200R001C30, V500R002C00, V500R002C10, ViewPoint 8660 V100R008C03, ViewPoint 9030 V100R011C02, V100R011C03, eSpace U1981 V100R001C20, V200R003C00, V200R003C20, V200R003C30 has a buffer overflow vulnerability. An attacker may send specially crafted messages to the affected products. Due to the insufficient validation of some values for SIP messages, successful exploit may cause services abnormal.

Credit: psirt@huawei.com

Affected SoftwareAffected VersionHow to fix
Huawei Dp300 Firmware=v500r002c00
Huawei DP300
Huawei Ips Module Firmware=v100r001c10
Huawei Ips Module Firmware=v100r001c20
Huawei Ips Module Firmware=v100r001c30
Huawei Ips Module Firmware=v500r001c00
Huawei Ips Module Firmware=v500r001c20
Huawei Ips Module Firmware=v500r001c30
Huawei Ips Module Firmware=v500r001c50
Huawei IPS Module
Huawei Ngfw Module Firmware=v100r001c10
Huawei Ngfw Module Firmware=v100r001c20
Huawei Ngfw Module Firmware=v100r001c30
Huawei Ngfw Module Firmware=v500r001c00
Huawei Ngfw Module Firmware=v500r001c20
Huawei Ngfw Module Firmware=v500r002c00
Huawei Ngfw Module Firmware=v500r002c10
Huawei NGFW Module
Huawei Nip6300 Firmware=v500r001c00
Huawei Nip6300 Firmware=v500r001c20
Huawei Nip6300 Firmware=v500r001c30
Huawei Nip6300 Firmware=v500r001c50
Huawei NIP6300
Huawei Nip6600 Firmware=v500r001c00
Huawei Nip6600 Firmware=v500r001c20
Huawei Nip6600 Firmware=v500r001c30
Huawei Nip6600 Firmware=v500r001c50
Huawei Nip6600
Huawei Nip6800 Firmware=v500r001c50
Huawei NIP6800
Huawei Rp200 Firmware=v500r002c00
Huawei Rp200 Firmware=v600r006c0
Huawei Rp200
Huawei Svn5600 Firmware=v200r003c00
Huawei Svn5600 Firmware=v200r003c10
Huawei Svn5600
Huawei Svn5800 Firmware=v200r003c00
Huawei Svn5800 Firmware=v200r003c10
Huawei Svn5800
Huawei Svn5800-c Firmware=v200r003c00
Huawei Svn5800-c Firmware=v200r003c10
Huawei Svn5800-c
Huawei Semg9811 Firmware=v300r001c01
Huawei Semg9811
Huawei Secospace Usg6300 Firmware=v100r001c10
Huawei Secospace Usg6300 Firmware=v100r001c20
Huawei Secospace Usg6300 Firmware=v100r001c30
Huawei Secospace Usg6300 Firmware=v500r001c00
Huawei Secospace Usg6300 Firmware=v500r001c20
Huawei Secospace Usg6300 Firmware=v500r001c30
Huawei Secospace Usg6300 Firmware=v500r001c50
Huawei Secospace USG6300
Huawei Secospace Usg6500 Firmware=v100r001c10
Huawei Secospace Usg6500 Firmware=v100r001c20
Huawei Secospace Usg6500 Firmware=v100r001c30
Huawei Secospace Usg6500 Firmware=v500r001c00
Huawei Secospace Usg6500 Firmware=v500r001c20
Huawei Secospace Usg6500 Firmware=v500r001c30
Huawei Secospace Usg6500 Firmware=v500r001c50
Huawei Secospace Usg6500
Huawei Secospace Usg6600 Firmware=v100r001c00
Huawei Secospace Usg6600 Firmware=v100r001c20
Huawei Secospace Usg6600 Firmware=v100r001c30
Huawei Secospace Usg6600 Firmware=v500r001c00
Huawei Secospace Usg6600 Firmware=v500r001c20
Huawei Secospace Usg6600 Firmware=v500r001c30
Huawei Secospace Usg6600 Firmware=v500r001c50
Huawei Secospace USG6600
Huawei Te30 Firmware=v100r001c02
Huawei Te30 Firmware=v100r001c10
Huawei Te30 Firmware=v500r002c00
Huawei Te30 Firmware=v600r006c00
Huawei TE30
Huawei Te40 Firmware=v500r002c00
Huawei Te40 Firmware=v600r006c00
Huawei Te40
Huawei Te50 Firmware=v500r002c00
Huawei Te50 Firmware=v600r006c00
Huawei Te50
Huawei Te60 Firmware=v100r001c01
Huawei Te60 Firmware=v100r001c10
Huawei Te60 Firmware=v500r002c00
Huawei Te60 Firmware=v600r006c00
Huawei TE60
Huawei Usg9500 Firmware=v500r001c00
Huawei Usg9500 Firmware=v500r001c20
Huawei Usg9500 Firmware=v500r001c30
Huawei USG9500
Huawei Usg9520 Firmware=v300r001c01
Huawei Usg9520 Firmware=v300r001c20
Huawei USG9520
Huawei Usg9560 Firmware=v300r001c01
Huawei Usg9560 Firmware=v300r001c20
Huawei USG9560
Huawei Usg9580 Firmware=v300r001c01
Huawei Usg9580 Firmware=v300r001c20
Huawei Usg9580
Huawei Vp9660 Firmware=v200r001c02
Huawei Vp9660 Firmware=v200r001c30
Huawei Vp9660 Firmware=v500r002c00
Huawei Vp9660 Firmware=v500r002c10
Huawei VP9660
Huawei Viewpoint 8660 Firmware=v100r008c03
Huawei ViewPoint 8660
Huawei Viewpoint 9030 Firmware=v100r011c02
Huawei Viewpoint 9030 Firmware=v100r011c03
Huawei Viewpoint 9030
Huawei Espace U1981 Firmware=v100r001c20
Huawei Espace U1981 Firmware=v200r003c00
Huawei Espace U1981 Firmware=v200r003c20
Huawei Espace U1981 Firmware=v200r003c30
Huawei Espace U1981

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2024 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203