First published: Mon Mar 05 2018(Updated: )
SIP module in Huawei DP300 V500R002C00; V500R002C00SPC100; V500R002C00SPC200; V500R002C00SPC300; V500R002C00SPC400; V500R002C00SPC500; V500R002C00SPC600; V500R002C00SPC800; V500R002C00SPC900; V500R002C00SPCa00; RP200 V500R002C00SPC200; V600R006C00; V600R006C00SPC200; RSE6500 V500R002C00SPC100; V500R002C00SPC200; V500R002C00SPC300; V500R002C00SPC300T; V500R002C00SPC500; V500R002C00SPC600; V500R002C00SPC700; V500R002C00T; TE30 V100R001C10; V100R001C10SPC100; V100R001C10SPC200B010; V100R001C10SPC300; V100R001C10SPC500; V100R001C10SPC600; V100R001C10SPC700B010; V100R001C10SPC800; V500R002C00SPC200; V500R002C00SPC500; V500R002C00SPC600; V500R002C00SPC700; V500R002C00SPC900; V500R002C00SPCb00; V600R006C00; TE40 V500R002C00SPC600; V500R002C00SPC700; V500R002C00SPC900; V500R002C00SPCb00; V600R006C00; V600R006C00SPC200; TE50 V500R002C00SPC600; V500R002C00SPC700; V500R002C00SPCb00; V600R006C00; V600R006C00SPC200; TE60 V100R001C01SPC100; V100R001C01SPC107TB010; V100R001C10; V100R001C10SPC300; V100R001C10SPC400; V100R001C10SPC500; V100R001C10SPC600; V100R001C10SPC700; V100R001C10SPC800; V100R001C10SPC900; V500R002C00; V500R002C00SPC100; V500R002C00SPC200; V500R002C00SPC300; V500R002C00SPC600; V500R002C00SPC700; V500R002C00SPC800; V500R002C00SPC900; V500R002C00SPCa00; V500R002C00SPCb00; V500R002C00SPCd00; V600R006C00; V600R006C00SPC100; V600R006C00SPC200; V600R006C00SPC300; TP3106 V100R002C00; V100R002C00SPC200; V100R002C00SPC400; V100R002C00SPC600; V100R002C00SPC700; V100R002C00SPC800; TP3206 V100R002C00; V100R002C00SPC200; V100R002C00SPC400; V100R002C00SPC600; V100R002C00SPC700; V100R002C10; ViewPoint 9030 V100R011C02SPC100; V100R011C03B012SP15; V100R011C03B012SP16; V100R011C03B015SP03; V100R011C03LGWL01SPC100; V100R011C03SPC100; V100R011C03SPC200; V100R011C03SPC300; V100R011C03SPC400; V100R011C03SPC500; eSpace U1960 V200R003C30SPC200; eSpace U1981 V100R001C20SPC700; V200R003C20SPCa00 has an overflow vulnerability that the module cannot parse a malformed SIP message when validating variables. Attacker can exploit it to make one process reboot at random.
Credit: psirt@huawei.com
Affected Software | Affected Version | How to fix |
---|---|---|
Huawei Dp300 Firmware | =v500r002c00 | |
Huawei Dp300 Firmware | =v500r002c00spc100 | |
Huawei Dp300 Firmware | =v500r002c00spc200 | |
Huawei Dp300 Firmware | =v500r002c00spc300 | |
Huawei Dp300 Firmware | =v500r002c00spc400 | |
Huawei Dp300 Firmware | =v500r002c00spc500 | |
Huawei Dp300 Firmware | =v500r002c00spc600 | |
Huawei Dp300 Firmware | =v500r002c00spc800 | |
Huawei Dp300 Firmware | =v500r002c00spc900 | |
Huawei Dp300 Firmware | =v500r002c00spca00 | |
Huawei DP300 | ||
Huawei Rp200 Firmware | =v500r002c00spc200 | |
Huawei Rp200 Firmware | =v600r006c00 | |
Huawei Rp200 Firmware | =v600r006c00spc200 | |
Huawei Rp200 | ||
Huawei Rse6500 Firmware | =v500r002c00spc100 | |
Huawei Rse6500 Firmware | =v500r002c00spc200 | |
Huawei Rse6500 Firmware | =v500r002c00spc300 | |
Huawei Rse6500 Firmware | =v500r002c00spc300t | |
Huawei Rse6500 Firmware | =v500r002c00spc500 | |
Huawei Rse6500 Firmware | =v500r002c00spc600 | |
Huawei Rse6500 Firmware | =v500r002c00spc700 | |
Huawei Rse6500 Firmware | =v500r002c00t | |
Huawei Rse6500 | ||
Huawei Te30 Firmware | =v100r001c10 | |
Huawei Te30 Firmware | =v100r001c10spc100 | |
Huawei Te30 Firmware | =v100r001c10spc200b010 | |
Huawei Te30 Firmware | =v100r001c10spc300 | |
Huawei Te30 Firmware | =v100r001c10spc500 | |
Huawei Te30 Firmware | =v100r001c10spc600 | |
Huawei Te30 Firmware | =v100r001c10spc700b010 | |
Huawei Te30 Firmware | =v100r001c10spc800 | |
Huawei Te30 Firmware | =v500r002c00spc200 | |
Huawei Te30 Firmware | =v500r002c00spc500 | |
Huawei Te30 Firmware | =v500r002c00spc600 | |
Huawei Te30 Firmware | =v500r002c00spc700 | |
Huawei Te30 Firmware | =v500r002c00spc900 | |
Huawei Te30 Firmware | =v500r002c00spcb00 | |
Huawei Te30 Firmware | =v600r006c00 | |
Huawei TE30 | ||
Huawei Te40 Firmware | =v500r002c00spc600 | |
Huawei Te40 Firmware | =v500r002c00spc700 | |
Huawei Te40 Firmware | =v500r002c00spc900 | |
Huawei Te40 Firmware | =v500r002c00spcb00 | |
Huawei Te40 Firmware | =v600r006c00 | |
Huawei Te40 Firmware | =v600r006c00spc200 | |
Huawei Te40 | ||
Huawei Te50 Firmware | =v500r002c00spc600 | |
Huawei Te50 Firmware | =v500r002c00spc700 | |
Huawei Te50 Firmware | =v500r002c00spcb00 | |
Huawei Te50 Firmware | =v600r006c00 | |
Huawei Te50 Firmware | =v600r006c00spc200 | |
Huawei Te50 | ||
Huawei Te60 Firmware | =v100r001c01spc100 | |
Huawei Te60 Firmware | =v100r001c01spc107tb010 | |
Huawei Te60 Firmware | =v100r001c10 | |
Huawei Te60 Firmware | =v100r001c10spc300 | |
Huawei Te60 Firmware | =v100r001c10spc400 | |
Huawei Te60 Firmware | =v100r001c10spc500 | |
Huawei Te60 Firmware | =v100r001c10spc600 | |
Huawei Te60 Firmware | =v100r001c10spc700 | |
Huawei Te60 Firmware | =v100r001c10spc800 | |
Huawei Te60 Firmware | =v100r001c10spc900 | |
Huawei Te60 Firmware | =v500r002c00 | |
Huawei Te60 Firmware | =v500r002c00spc100 | |
Huawei Te60 Firmware | =v500r002c00spc200 | |
Huawei Te60 Firmware | =v500r002c00spc300 | |
Huawei Te60 Firmware | =v500r002c00spc600 | |
Huawei Te60 Firmware | =v500r002c00spc700 | |
Huawei Te60 Firmware | =v500r002c00spc800 | |
Huawei Te60 Firmware | =v500r002c00spc900 | |
Huawei Te60 Firmware | =v500r002c00spca00 | |
Huawei Te60 Firmware | =v500r002c00spcb00 | |
Huawei Te60 Firmware | =v500r002c00spcd00 | |
Huawei Te60 Firmware | =v600r006c00 | |
Huawei Te60 Firmware | =v600r006c00spc100 | |
Huawei Te60 Firmware | =v600r006c00spc200 | |
Huawei Te60 Firmware | =v600r006c00spc300 | |
Huawei TE60 | ||
Huawei Tp3106 Firmware | =v100r002c00 | |
Huawei Tp3106 Firmware | =v100r002c00spc200 | |
Huawei Tp3106 Firmware | =v100r002c00spc400 | |
Huawei Tp3106 Firmware | =v100r002c00spc600 | |
Huawei Tp3106 Firmware | =v100r002c00spc700 | |
Huawei Tp3106 Firmware | =v100r002c00spc800 | |
Huawei Tp3106 | ||
Huawei Tp3206 Firmware | =v100r002c00 | |
Huawei Tp3206 Firmware | =v100r002c00spc200 | |
Huawei Tp3206 Firmware | =v100r002c00spc400 | |
Huawei Tp3206 Firmware | =v100r002c00spc600 | |
Huawei Tp3206 Firmware | =v100r002c00spc700 | |
Huawei Tp3206 Firmware | =v100r002c10 | |
Huawei Tp3206 | ||
Huawei Viewpoint 9030 Firmware | =v100r011c02spc100 | |
Huawei Viewpoint 9030 Firmware | =v100r011c03b012sp15 | |
Huawei Viewpoint 9030 Firmware | =v100r011c03b012sp16 | |
Huawei Viewpoint 9030 Firmware | =v100r011c03b015sp03 | |
Huawei Viewpoint 9030 Firmware | =v100r011c03lgwl01spc100 | |
Huawei Viewpoint 9030 Firmware | =v100r011c03spc100 | |
Huawei Viewpoint 9030 Firmware | =v100r011c03spc200 | |
Huawei Viewpoint 9030 Firmware | =v100r011c03spc300 | |
Huawei Viewpoint 9030 Firmware | =v100r011c03spc400 | |
Huawei Viewpoint 9030 Firmware | =v100r011c03spc500 | |
Huawei Viewpoint 9030 | ||
Huawei Espace U1960 Firmware | =v200r003c30spc200 | |
Huawei Espace U1960 | ||
Huawei Espace U1981 Firmware | =v100r001c20spc700 | |
Huawei Espace U1981 Firmware | =v200r003c20spca00 | |
Huawei Espace U1981 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2017-17143 is rated as medium with a CVSS score of 5.3.
To fix the SIP module vulnerability in Huawei DP300 V500R002C00, it is recommended to apply the patches provided by Huawei through their security advisory.
Yes, Huawei DP300 V500R002C00 is affected by CVE-2017-17143 due to the vulnerability in its SIP module.
For more information about CVE-2017-17143 affecting Huawei products, you can refer to the Huawei security advisory linked in the references.