CWE
119
Advisory Published
Updated

CVE-2017-17143: Buffer Overflow

First published: Mon Mar 05 2018(Updated: )

SIP module in Huawei DP300 V500R002C00; V500R002C00SPC100; V500R002C00SPC200; V500R002C00SPC300; V500R002C00SPC400; V500R002C00SPC500; V500R002C00SPC600; V500R002C00SPC800; V500R002C00SPC900; V500R002C00SPCa00; RP200 V500R002C00SPC200; V600R006C00; V600R006C00SPC200; RSE6500 V500R002C00SPC100; V500R002C00SPC200; V500R002C00SPC300; V500R002C00SPC300T; V500R002C00SPC500; V500R002C00SPC600; V500R002C00SPC700; V500R002C00T; TE30 V100R001C10; V100R001C10SPC100; V100R001C10SPC200B010; V100R001C10SPC300; V100R001C10SPC500; V100R001C10SPC600; V100R001C10SPC700B010; V100R001C10SPC800; V500R002C00SPC200; V500R002C00SPC500; V500R002C00SPC600; V500R002C00SPC700; V500R002C00SPC900; V500R002C00SPCb00; V600R006C00; TE40 V500R002C00SPC600; V500R002C00SPC700; V500R002C00SPC900; V500R002C00SPCb00; V600R006C00; V600R006C00SPC200; TE50 V500R002C00SPC600; V500R002C00SPC700; V500R002C00SPCb00; V600R006C00; V600R006C00SPC200; TE60 V100R001C01SPC100; V100R001C01SPC107TB010; V100R001C10; V100R001C10SPC300; V100R001C10SPC400; V100R001C10SPC500; V100R001C10SPC600; V100R001C10SPC700; V100R001C10SPC800; V100R001C10SPC900; V500R002C00; V500R002C00SPC100; V500R002C00SPC200; V500R002C00SPC300; V500R002C00SPC600; V500R002C00SPC700; V500R002C00SPC800; V500R002C00SPC900; V500R002C00SPCa00; V500R002C00SPCb00; V500R002C00SPCd00; V600R006C00; V600R006C00SPC100; V600R006C00SPC200; V600R006C00SPC300; TP3106 V100R002C00; V100R002C00SPC200; V100R002C00SPC400; V100R002C00SPC600; V100R002C00SPC700; V100R002C00SPC800; TP3206 V100R002C00; V100R002C00SPC200; V100R002C00SPC400; V100R002C00SPC600; V100R002C00SPC700; V100R002C10; ViewPoint 9030 V100R011C02SPC100; V100R011C03B012SP15; V100R011C03B012SP16; V100R011C03B015SP03; V100R011C03LGWL01SPC100; V100R011C03SPC100; V100R011C03SPC200; V100R011C03SPC300; V100R011C03SPC400; V100R011C03SPC500; eSpace U1960 V200R003C30SPC200; eSpace U1981 V100R001C20SPC700; V200R003C20SPCa00 has an overflow vulnerability that the module cannot parse a malformed SIP message when validating variables. Attacker can exploit it to make one process reboot at random.

Credit: psirt@huawei.com

Affected SoftwareAffected VersionHow to fix
Huawei Dp300 Firmware=v500r002c00
Huawei Dp300 Firmware=v500r002c00spc100
Huawei Dp300 Firmware=v500r002c00spc200
Huawei Dp300 Firmware=v500r002c00spc300
Huawei Dp300 Firmware=v500r002c00spc400
Huawei Dp300 Firmware=v500r002c00spc500
Huawei Dp300 Firmware=v500r002c00spc600
Huawei Dp300 Firmware=v500r002c00spc800
Huawei Dp300 Firmware=v500r002c00spc900
Huawei Dp300 Firmware=v500r002c00spca00
Huawei DP300
Huawei Rp200 Firmware=v500r002c00spc200
Huawei Rp200 Firmware=v600r006c00
Huawei Rp200 Firmware=v600r006c00spc200
Huawei Rp200
Huawei Rse6500 Firmware=v500r002c00spc100
Huawei Rse6500 Firmware=v500r002c00spc200
Huawei Rse6500 Firmware=v500r002c00spc300
Huawei Rse6500 Firmware=v500r002c00spc300t
Huawei Rse6500 Firmware=v500r002c00spc500
Huawei Rse6500 Firmware=v500r002c00spc600
Huawei Rse6500 Firmware=v500r002c00spc700
Huawei Rse6500 Firmware=v500r002c00t
Huawei Rse6500
Huawei Te30 Firmware=v100r001c10
Huawei Te30 Firmware=v100r001c10spc100
Huawei Te30 Firmware=v100r001c10spc200b010
Huawei Te30 Firmware=v100r001c10spc300
Huawei Te30 Firmware=v100r001c10spc500
Huawei Te30 Firmware=v100r001c10spc600
Huawei Te30 Firmware=v100r001c10spc700b010
Huawei Te30 Firmware=v100r001c10spc800
Huawei Te30 Firmware=v500r002c00spc200
Huawei Te30 Firmware=v500r002c00spc500
Huawei Te30 Firmware=v500r002c00spc600
Huawei Te30 Firmware=v500r002c00spc700
Huawei Te30 Firmware=v500r002c00spc900
Huawei Te30 Firmware=v500r002c00spcb00
Huawei Te30 Firmware=v600r006c00
Huawei TE30
Huawei Te40 Firmware=v500r002c00spc600
Huawei Te40 Firmware=v500r002c00spc700
Huawei Te40 Firmware=v500r002c00spc900
Huawei Te40 Firmware=v500r002c00spcb00
Huawei Te40 Firmware=v600r006c00
Huawei Te40 Firmware=v600r006c00spc200
Huawei Te40
Huawei Te50 Firmware=v500r002c00spc600
Huawei Te50 Firmware=v500r002c00spc700
Huawei Te50 Firmware=v500r002c00spcb00
Huawei Te50 Firmware=v600r006c00
Huawei Te50 Firmware=v600r006c00spc200
Huawei Te50
Huawei Te60 Firmware=v100r001c01spc100
Huawei Te60 Firmware=v100r001c01spc107tb010
Huawei Te60 Firmware=v100r001c10
Huawei Te60 Firmware=v100r001c10spc300
Huawei Te60 Firmware=v100r001c10spc400
Huawei Te60 Firmware=v100r001c10spc500
Huawei Te60 Firmware=v100r001c10spc600
Huawei Te60 Firmware=v100r001c10spc700
Huawei Te60 Firmware=v100r001c10spc800
Huawei Te60 Firmware=v100r001c10spc900
Huawei Te60 Firmware=v500r002c00
Huawei Te60 Firmware=v500r002c00spc100
Huawei Te60 Firmware=v500r002c00spc200
Huawei Te60 Firmware=v500r002c00spc300
Huawei Te60 Firmware=v500r002c00spc600
Huawei Te60 Firmware=v500r002c00spc700
Huawei Te60 Firmware=v500r002c00spc800
Huawei Te60 Firmware=v500r002c00spc900
Huawei Te60 Firmware=v500r002c00spca00
Huawei Te60 Firmware=v500r002c00spcb00
Huawei Te60 Firmware=v500r002c00spcd00
Huawei Te60 Firmware=v600r006c00
Huawei Te60 Firmware=v600r006c00spc100
Huawei Te60 Firmware=v600r006c00spc200
Huawei Te60 Firmware=v600r006c00spc300
Huawei TE60
Huawei Tp3106 Firmware=v100r002c00
Huawei Tp3106 Firmware=v100r002c00spc200
Huawei Tp3106 Firmware=v100r002c00spc400
Huawei Tp3106 Firmware=v100r002c00spc600
Huawei Tp3106 Firmware=v100r002c00spc700
Huawei Tp3106 Firmware=v100r002c00spc800
Huawei Tp3106
Huawei Tp3206 Firmware=v100r002c00
Huawei Tp3206 Firmware=v100r002c00spc200
Huawei Tp3206 Firmware=v100r002c00spc400
Huawei Tp3206 Firmware=v100r002c00spc600
Huawei Tp3206 Firmware=v100r002c00spc700
Huawei Tp3206 Firmware=v100r002c10
Huawei Tp3206
Huawei Viewpoint 9030 Firmware=v100r011c02spc100
Huawei Viewpoint 9030 Firmware=v100r011c03b012sp15
Huawei Viewpoint 9030 Firmware=v100r011c03b012sp16
Huawei Viewpoint 9030 Firmware=v100r011c03b015sp03
Huawei Viewpoint 9030 Firmware=v100r011c03lgwl01spc100
Huawei Viewpoint 9030 Firmware=v100r011c03spc100
Huawei Viewpoint 9030 Firmware=v100r011c03spc200
Huawei Viewpoint 9030 Firmware=v100r011c03spc300
Huawei Viewpoint 9030 Firmware=v100r011c03spc400
Huawei Viewpoint 9030 Firmware=v100r011c03spc500
Huawei Viewpoint 9030
Huawei Espace U1960 Firmware=v200r003c30spc200
Huawei Espace U1960
Huawei Espace U1981 Firmware=v100r001c20spc700
Huawei Espace U1981 Firmware=v200r003c20spca00
Huawei Espace U1981

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Frequently Asked Questions

  • What is the severity of CVE-2017-17143?

    The severity of CVE-2017-17143 is rated as medium with a CVSS score of 5.3.

  • How can I fix the SIP module vulnerability in Huawei DP300 V500R002C00?

    To fix the SIP module vulnerability in Huawei DP300 V500R002C00, it is recommended to apply the patches provided by Huawei through their security advisory.

  • Is Huawei DP300 V500R002C00 affected by CVE-2017-17143?

    Yes, Huawei DP300 V500R002C00 is affected by CVE-2017-17143 due to the vulnerability in its SIP module.

  • Where can I find more information about CVE-2017-17143 affecting Huawei products?

    For more information about CVE-2017-17143 affecting Huawei products, you can refer to the Huawei security advisory linked in the references.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2024 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203