CVE-2017-15345: Medium severity huawei lon-l29d vulnerability
Published Feb 15, 2018
·Updated
Huawei Smartphones with software LON-L29DC721B186 have a denial of service vulnerability. An attacker could make an loop exit condition that cannot be reached by sending the crafted 3GPP message. Successful exploit could cause the device to reboot.
Affected Software
2 affected components
huawei Lon-l29d Firmware=lon-l29dc721b186
huawei LON-L29D
Event History
Feb 15, 2018
CVE Published
via MITRE·04:00 PM
Data Sourced
via MITRE·04:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2017-15345.
2
What is the severity of CVE-2017-15345?
The severity of CVE-2017-15345 is medium with a severity value of 5.3.
3
What is the affected software?
The affected software is Huawei Smartphones with software LON-L29DC721B186.
4
How can this vulnerability be exploited?
The vulnerability can be exploited by sending a crafted 3GPP message to trigger a loop exit condition that cannot be reached, causing the device to reboot.
5
Is there a fix available for CVE-2017-15345?
Please refer to the following reference for information on available fixes: http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20171108-01-smartphone-en