First published: Fri Mar 09 2018(Updated: )
Huawei ViewPoint 8660 V100R008C03 have a memory leak vulnerability. The software does not release allocated memory properly when parse XML Schema data. An authenticated attacker could upload a crafted XML file, successful exploit could cause the system service abnormal since run out of memory.
Credit: psirt@huawei.com
Affected Software | Affected Version | How to fix |
---|---|---|
Huawei Viewpoint 8660 Firmware | =v100r008c03 | |
Huawei ViewPoint 8660 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this issue is CVE-2017-17329.
The software affected by this vulnerability is Huawei ViewPoint 8660 V100R008C03.
The severity level of this vulnerability is low, with a CVSS score of 3.3.
This vulnerability occurs due to a memory leak issue where the software does not release allocated memory properly when parsing XML Schema data.
An authenticated attacker could upload a crafted XML file to exploit this vulnerability, causing the system service to become abnormal and run out of memory.
An attacker with authenticated access can exploit this vulnerability by uploading a specially crafted XML file.
Yes, an upgrade to the latest version of Huawei ViewPoint 8660 firmware can fix this vulnerability.