First published: Thu Feb 15 2018(Updated: )
Huawei AR120-S V200R006C10, V200R007C00, V200R008C20, V200R008C30, AR1200 V200R006C10, V200R006C13, V200R007C00, V200R007C01, V200R007C02, V200R008C20, V200R008C30, AR1200-S V200R006C10, V200R007C00, V200R008C20, V200R008C30, AR150 V200R006C10, V200R007C00, V200R007C01, V200R007C02, V200R008C20, V200R008C30, AR150-S V200R006C10, V200R007C00, V200R008C20, V200R008C30, AR160 V200R006C10, V200R006C12, V200R007C00, V200R007C01, V200R007C02, V200R008C20, V200R008C30, AR200 V200R006C10, V200R007C00, V200R007C01, V200R008C20, V200R008C30, AR200-S V200R006C10, V200R007C00, V200R008C20, V200R008C30, AR2200 V200R006C10, V200R006C13, V200R006C16, V200R007C00, V200R007C01, V200R007C02, V200R008C20, V200R008C30, AR2200-S V200R006C10, V200R007C00, V200R008C20, V200R008C30, AR3200 V200R006C10, V200R006C11, V200R007C00, V200R007C01, V200R007C02, V200R008C00, V200R008C10, V200R008C20, V200R008C30, AR3600 V200R006C10, V200R007C00, V200R007C01, V200R008C20, AR510 V200R006C10, V200R006C12, V200R006C13, V200R006C15, V200R006C16, V200R006C17, V200R007C00, V200R008C20, V200R008C30, DP300 V500R002C00, IPS Module V100R001C10, V100R001C30, V500R001C00, V500R001C20, V500R001C30, V500R001C50, NGFW Module V100R001C10, V100R001C20, V100R001C30, V500R001C00, V500R001C20, V500R002C00, V500R002C10, NIP6300 V500R001C00, V500R001C20, V500R001C30, V500R001C50, NIP6600 V500R001C00, V500R001C20, V500R001C30, V500R001C50, NIP6800 V500R001C50, NetEngine16EX V200R006C10, V200R007C00, V200R008C20, V200R008C30, RP200 V500R002C00, V600R006C00, RSE6500 V500R002C00, SRG1300 V200R006C10, V200R007C00, V200R007C02, V200R008C20, V200R008C30, SRG2300 V200R006C10, V200R007C00, V200R007C02, V200R008C20, V200R008C30, SRG3300 V200R006C10, V200R007C00, V200R008C20, V200R008C30, SVN5600 V200R003C00, V200R003C10, SVN5800 V200R003C10, SVN5800-C V200R003C00, V200R003C10, SeMG9811 V300R001C01, Secospace USG6300 V100R001C10, V100R001C20, V100R001C30, V500R001C00, V500R001C20, V500R001C30, V500R001C50, Secospace USG6500 V100R001C10, V100R001C20, V100R001C30, V500R001C00, V500R001C20, V500R001C30, V500R001C50, Secospace USG6600 V100R001C00, V100R001C10, V100R001C20, V100R001C30, V500R001C00, V500R001C20, V500R001C30, V500R001C50, TE30 V100R001C02, V100R001C10, V500R002C00, V600R006C00, TE40 V500R002C00, V600R006C00, TE50 V500R002C00, V600R006C00, TE60 V100R001C01, V100R001C10, V500R002C00, V600R006C00, TP3106 V100R002C00, TP3206 V100R002C00, V100R002C10, USG9500 V500R001C00, V500R001C20, V500R001C30, V500R001C50, USG9520 V300R001C01, V300R001C20, USG9560 V300R001C01, V300R001C20, USG9580 V300R001C01, V300R001C20, ViewPoint 9030 V100R011C02, V100R011C03, eSpace U1981 V200R003C20SPC900, V200R003C30SPC200 have a buffer overflow vulnerability. An unauthenticated, remote attacker may send specially crafted SIP packages to the affected products. Due to the insufficient validation of some values for SIP packages, successful exploit may cause services abnormal.
Credit: psirt@huawei.com
Affected Software | Affected Version | How to fix |
---|---|---|
Huawei Ar120-s Firmware | =v200r006c10 | |
Huawei Ar120-s Firmware | =v200r007c00 | |
Huawei Ar120-s Firmware | =v200r008c20 | |
Huawei Ar120-s Firmware | =v200r008c30 | |
Huawei AR120-S | ||
Huawei Ar1200 Firmware | =v200r006c10 | |
Huawei Ar1200 Firmware | =v200r006c13 | |
Huawei Ar1200 Firmware | =v200r007c00 | |
Huawei Ar1200 Firmware | =v200r007c01 | |
Huawei Ar1200 Firmware | =v200r007c02 | |
Huawei Ar1200 Firmware | =v200r008c20 | |
Huawei Ar1200 Firmware | =v200r008c30 | |
Huawei AR1200 | ||
Huawei Ar1200-s Firmware | =v200r006c10 | |
Huawei Ar1200-s Firmware | =v200r007c00 | |
Huawei Ar1200-s Firmware | =v200r008c20 | |
Huawei Ar1200-s Firmware | =v200r008c30 | |
Huawei Ar1200-s | ||
Huawei Ar150 Firmware | =v200r006c10 | |
Huawei Ar150 Firmware | =v200r007c00 | |
Huawei Ar150 Firmware | =v200r007c01 | |
Huawei Ar150 Firmware | =v200r007c02 | |
Huawei Ar150 Firmware | =v200r008c20 | |
Huawei Ar150 Firmware | =v200r008c30 | |
Huawei Ar150 | ||
Huawei Ar150-s Firmware | =v200r006c10 | |
Huawei Ar150-s Firmware | =v200r007c00 | |
Huawei Ar150-s Firmware | =v200r008c20 | |
Huawei Ar150-s Firmware | =v200r008c30 | |
Huawei Ar150-s | ||
Huawei Ar160 Firmware | =v200r006c10 | |
Huawei Ar160 Firmware | =v200r006c12 | |
Huawei Ar160 Firmware | =v200r007c00 | |
Huawei Ar160 Firmware | =v200r007c01 | |
Huawei Ar160 Firmware | =v200r007c02 | |
Huawei Ar160 Firmware | =v200r008c20 | |
Huawei Ar160 Firmware | =v200r008c30 | |
Huawei Ar160 | ||
Huawei Ar200 Firmware | =v200r006c10 | |
Huawei Ar200 Firmware | =v200r007c00 | |
Huawei Ar200 Firmware | =v200r007c01 | |
Huawei Ar200 Firmware | =v200r008c20 | |
Huawei Ar200 Firmware | =v200r008c30 | |
Huawei Ar200 | ||
Huawei Ar200-s Firmware | =v200r006c10 | |
Huawei Ar200-s Firmware | =v200r007c00 | |
Huawei Ar200-s Firmware | =v200r008c20 | |
Huawei Ar200-s Firmware | =v200r008c30 | |
Huawei Ar200-s | ||
Huawei Ar2200 Firmware | =v200r006c10 | |
Huawei Ar2200 Firmware | =v200r006c13 | |
Huawei Ar2200 Firmware | =v200r006c16 | |
Huawei Ar2200 Firmware | =v200r007c00 | |
Huawei Ar2200 Firmware | =v200r007c01 | |
Huawei Ar2200 Firmware | =v200r007c02 | |
Huawei Ar2200 Firmware | =v200r008c20 | |
Huawei Ar2200 Firmware | =v200r008c30 | |
Huawei Ar2200 | ||
Huawei Ar2200-s Firmware | =v200r006c10 | |
Huawei Ar2200-s Firmware | =v200r007c00 | |
Huawei Ar2200-s Firmware | =v200r008c20 | |
Huawei Ar2200-s Firmware | =v200r008c30 | |
Huawei Ar2200-s | ||
Huawei Ar3200 Firmware | =v200r006c10 | |
Huawei Ar3200 Firmware | =v200r006c11 | |
Huawei Ar3200 Firmware | =v200r007c00 | |
Huawei Ar3200 Firmware | =v200r007c01 | |
Huawei Ar3200 Firmware | =v200r007c02 | |
Huawei Ar3200 Firmware | =v200r008c00 | |
Huawei Ar3200 Firmware | =v200r008c10 | |
Huawei Ar3200 Firmware | =v200r008c20 | |
Huawei Ar3200 Firmware | =v200r008c30 | |
Huawei AR3200 | ||
Huawei Ar3600 Firmware | =v200r006c10 | |
Huawei Ar3600 Firmware | =v200r007c00 | |
Huawei Ar3600 Firmware | =v200r007c01 | |
Huawei Ar3600 Firmware | =v200r008c20 | |
Huawei Ar3600 | ||
Huawei Ar510 Firmware | =v200r006c10 | |
Huawei Ar510 Firmware | =v200r006c12 | |
Huawei Ar510 Firmware | =v200r006c13 | |
Huawei Ar510 Firmware | =v200r006c15 | |
Huawei Ar510 Firmware | =v200r006c16 | |
Huawei Ar510 Firmware | =v200r006c17 | |
Huawei Ar510 Firmware | =v200r007c00 | |
Huawei Ar510 Firmware | =v200r008c20 | |
Huawei Ar510 Firmware | =v200r008c30 | |
Huawei Ar510 | ||
Huawei Dp300 Firmware | =v500r002c00 | |
Huawei DP300 | ||
Huawei Ips Module Firmware | =v100r001c10 | |
Huawei Ips Module Firmware | =v100r001c30 | |
Huawei Ips Module Firmware | =v500r001c00 | |
Huawei Ips Module Firmware | =v500r001c20 | |
Huawei Ips Module Firmware | =v500r001c30 | |
Huawei Ips Module Firmware | =v500r001c50 | |
Huawei IPS Module | ||
Huawei Ngfw Module Firmware | =v100r001c10 | |
Huawei Ngfw Module Firmware | =v100r001c20 | |
Huawei Ngfw Module Firmware | =v100r001c30 | |
Huawei Ngfw Module Firmware | =v500r001c00 | |
Huawei Ngfw Module Firmware | =v500r001c20 | |
Huawei Ngfw Module Firmware | =v500r002c00 | |
Huawei Ngfw Module Firmware | =v500r002c10 | |
Huawei NGFW Module | ||
Huawei Nip6300 Firmware | =v500r001c00 | |
Huawei Nip6300 Firmware | =v500r001c20 | |
Huawei Nip6300 Firmware | =v500r001c30 | |
Huawei Nip6300 Firmware | =v500r001c50 | |
Huawei NIP6300 | ||
Huawei Nip6600 Firmware | =v500r001c00 | |
Huawei Nip6600 Firmware | =v500r001c20 | |
Huawei Nip6600 Firmware | =v500r001c30 | |
Huawei Nip6600 Firmware | =v500r001c50 | |
Huawei Nip6600 | ||
Huawei Nip6800 Firmware | =v500r001c50 | |
Huawei NIP6800 | ||
Huawei Netengine16ex Firmware | =v200r006c10 | |
Huawei Netengine16ex Firmware | =v200r007c00 | |
Huawei Netengine16ex Firmware | =v200r008c20 | |
Huawei Netengine16ex Firmware | =v200r008c30 | |
Huawei Netengine16ex | ||
Huawei Rp200 Firmware | =v500r002c00 | |
Huawei Rp200 Firmware | =v600r006c00 | |
Huawei Rp200 | ||
Huawei Rse6500 Firmware | =v500r002c00 | |
Huawei Rse6500 | ||
Huawei Srg1300 Firmware | =v200r006c10 | |
Huawei Srg1300 Firmware | =v200r007c00 | |
Huawei Srg1300 Firmware | =v200r007c02 | |
Huawei Srg1300 Firmware | =v200r008c20 | |
Huawei Srg1300 Firmware | =v200r008c30 | |
Huawei Srg1300 | ||
Huawei Srg2300 Firmware | =v200r006c10 | |
Huawei Srg2300 Firmware | =v200r007c00 | |
Huawei Srg2300 Firmware | =v200r007c02 | |
Huawei Srg2300 Firmware | =v200r008c20 | |
Huawei Srg2300 Firmware | =v200r008c30 | |
Huawei Srg2300 | ||
Huawei Srg3300 Firmware | =v200r006c10 | |
Huawei Srg3300 Firmware | =v200r007c00 | |
Huawei Srg3300 Firmware | =v200r007c02 | |
Huawei Srg3300 Firmware | =v200r008c20 | |
Huawei Srg3300 Firmware | =v200r008c30 | |
Huawei Srg3300 | ||
Huawei Svn5600 Firmware | =v200r003c00 | |
Huawei Svn5600 Firmware | =v200r003c10 | |
Huawei Svn5600 | ||
Huawei Svn5800 Firmware | =v200r003c10 | |
Huawei Svn5800 | ||
Huawei Svn5800-c Firmware | =v200r003c00 | |
Huawei Svn5800-c Firmware | =v200r003c10 | |
Huawei Svn5800-c | ||
Huawei Semg9811 Firmware | =v300r001c01 | |
Huawei Semg9811 | ||
Huawei Secospace Usg6300 Firmware | =v100r001c10 | |
Huawei Secospace Usg6300 Firmware | =v100r001c20 | |
Huawei Secospace Usg6300 Firmware | =v100r001c30 | |
Huawei Secospace Usg6300 Firmware | =v500r001c00 | |
Huawei Secospace Usg6300 Firmware | =v500r001c20 | |
Huawei Secospace Usg6300 Firmware | =v500r001c30 | |
Huawei Secospace Usg6300 Firmware | =v500r001c50 | |
Huawei Secospace USG6300 | ||
Huawei Secospace Usg6500 Firmware | =v100r001c10 | |
Huawei Secospace Usg6500 Firmware | =v100r001c20 | |
Huawei Secospace Usg6500 Firmware | =v100r001c30 | |
Huawei Secospace Usg6500 Firmware | =v500r001c00 | |
Huawei Secospace Usg6500 Firmware | =v500r001c20 | |
Huawei Secospace Usg6500 Firmware | =v500r001c30 | |
Huawei Secospace Usg6500 Firmware | =v500r001c50 | |
Huawei Secospace Usg6500 | ||
Huawei Secospace Usg6600 Firmware | =v100r001c10 | |
Huawei Secospace Usg6600 Firmware | =v100r001c20 | |
Huawei Secospace Usg6600 Firmware | =v100r001c30 | |
Huawei Secospace Usg6600 Firmware | =v500r001c00 | |
Huawei Secospace Usg6600 Firmware | =v500r001c20 | |
Huawei Secospace Usg6600 Firmware | =v500r001c30 | |
Huawei Secospace Usg6600 Firmware | =v500r001c50 | |
Huawei Secospace USG6600 | ||
Huawei Te30 Firmware | =v100r001c02 | |
Huawei Te30 Firmware | =v100r001c10 | |
Huawei Te30 Firmware | =v500r002c00 | |
Huawei Te30 Firmware | =v600r006c00 | |
Huawei TE30 | ||
Huawei Te40 Firmware | =v500r002c00 | |
Huawei Te40 Firmware | =v600r006c00 | |
Huawei Te40 | ||
Huawei Te50 Firmware | =v500r002c00 | |
Huawei Te50 Firmware | =v600r006c00 | |
Huawei Te50 | ||
Huawei Tp3106 Firmware | =v100r002c00 | |
Huawei Tp3106 | ||
Huawei Tp3206 Firmware | =v100r002c00 | |
Huawei Tp3206 Firmware | =v100r002c10 | |
Huawei Tp3206 | ||
Huawei Usg9500 Firmware | =v500r001c00 | |
Huawei Usg9500 Firmware | =v500r001c20 | |
Huawei Usg9500 Firmware | =v500r001c30 | |
Huawei Usg9500 Firmware | =v500r001c50 | |
Huawei USG9500 | ||
Huawei Usg9520 Firmware | =v300r001c01 | |
Huawei Usg9520 Firmware | =v300r001c20 | |
Huawei USG9520 | ||
Huawei Usg9560 Firmware | =v300r001c01 | |
Huawei Usg9560 Firmware | =v300r001c20 | |
Huawei USG9560 | ||
Huawei Usg9580 Firmware | =v300r001c01 | |
Huawei Usg9580 Firmware | =v300r001c20 | |
Huawei Usg9580 | ||
Huawei Viewpoint 9030 Firmware | =v100r011c02 | |
Huawei Viewpoint 9030 Firmware | =v100r011c03 | |
Huawei Viewpoint 9030 | ||
Huawei Espace U1981 Firmware | =v200r003c20spc900 | |
Huawei Espace U1981 Firmware | =v200r003c30spc200 | |
Huawei Espace U1981 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-17297 is a vulnerability affecting multiple Huawei devices due to improper handling of specific types of frames.
CVE-2017-17297 has a severity rating of 5.3, classified as a medium-level vulnerability.
Huawei AR120-S, AR1200, AR1200-S, AR150, AR150-S, AR160, AR200, AR200-S, AR2200, AR2200-S, AR3200, AR3600, AR510, DP300, IPS Module, NGFW Module, NIP6300, NIP6600, NIP6800, Netengine16ex, Rp200, Rse6500, SRG1300, SRG2300, SRG3300, SVN5600, SVN5800, SVN5800-C, SEMG9811, Secospace USG6300, USG6500, USG6600, TE30, TE40, TE50, TP3106, TP3206, USG9500, USG9520, USG9560, USG9580, Viewpoint 9030, Espace U1981
Yes, Huawei AR120-S V200R006C10, V200R007C00, V200R008C20, and V200R008C30 are affected by CVE-2017-17297.
You can find more details about CVE-2017-17297 on the Huawei security advisory page.