First published: Fri Dec 13 2019(Updated: )
There is a weak algorithm vulnerability in some Huawei products. The affected products use weak algorithms by default. Attackers may exploit the vulnerability to cause information leaks.
Credit: psirt@huawei.com
Affected Software | Affected Version | How to fix |
---|---|---|
Huawei S12700 Firmware | =v200r007c00 | |
Huawei S12700 Firmware | =v200r007c01 | |
Huawei S12700 Firmware | =v200r007c20 | |
Huawei S12700 Firmware | =v200r008c00 | |
Huawei S12700 Firmware | =v200r010c00 | |
Huawei S12700 Firmware | =v200r011c10 | |
Huawei S12700 Firmware | =v200r012c00 | |
Huawei S12700 Firmware | ||
Huawei S1700 Firmware | =v200r006c10 | |
Huawei S1700 Firmware | =v200r010c00 | |
Huawei S1700 Firmware | =v200r011c10 | |
Huawei S1700 Firmware | =v200r012c00 | |
Huawei S1700 Firmware | =v200r012c20 | |
Huawei S1700 Firmware | ||
Huawei S2700 Firmware | =v200r006c00 | |
Huawei S2700 Firmware | =v200r006c10 | |
Huawei S2700 Firmware | =v200r007c00 | |
Huawei S2700 Firmware | =v200r008c00 | |
Huawei S2700 Firmware | =v200r010c00 | |
Huawei S2700 Firmware | =v200r011c00 | |
Huawei S2700 Firmware | =v200r011c10 | |
Huawei S2700 Firmware | =v200r012c00 | |
Huawei S2700 | ||
Huawei Campus S5700 firmware | =v200r005c00 | |
Huawei Campus S5700 firmware | =v200r005c02 | |
Huawei Campus S5700 firmware | =v200r005c03 | |
Huawei Campus S5700 firmware | =v200r006c00 | |
Huawei Campus S5700 firmware | =v200r007c00 | |
Huawei Campus S5700 firmware | =v200r008c00 | |
Huawei Campus S5700 firmware | =v200r010c00 | |
Huawei Campus S5700 firmware | =v200r011c00 | |
Huawei Campus S5700 firmware | =v200r011c10 | |
Huawei Campus S5700 firmware | =v200r012c00 | |
Huawei Campus S5700 firmware | =v200r012c20 | |
Huawei S5700 Firmware | ||
Huawei 6700EI firmware | =v200r005c00 | |
Huawei 6700EI firmware | =v200r005c01 | |
Huawei 6700EI firmware | =v200r005c02 | |
Huawei 6700EI firmware | =v200r008c00 | |
Huawei 6700EI firmware | =v200r010c00 | |
Huawei 6700EI firmware | =v200r011c00 | |
Huawei 6700EI firmware | =v200r011c10 | |
Huawei 6700EI firmware | =v200r012c00 | |
Huawei S6700 Firmware | ||
Huawei Campus S7700 firmware | =v200r006c00 | |
Huawei Campus S7700 firmware | =v200r007c00 | |
Huawei Campus S7700 firmware | =v200r008c00 | |
Huawei Campus S7700 firmware | =v200r010c00 | |
Huawei Campus S7700 firmware | =v200r011c10 | |
Huawei Campus S7700 firmware | =v200r012c00 | |
Huawei Campus S7700 | ||
Huawei LSW S9700 firmware | =v200r006c00 | |
Huawei LSW S9700 firmware | =v200r007c00 | |
Huawei LSW S9700 firmware | =v200r007c01 | |
Huawei LSW S9700 firmware | =v200r008c00 | |
Huawei LSW S9700 firmware | =v200r010c00 | |
Huawei LSW S9700 firmware | =v200r011c10 | |
Huawei LSW S9700 firmware | =v200r012c00 | |
Huawei 9700 Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-19397 has been classified with a moderate severity level due to its potential for information leaks.
To fix CVE-2019-19397, upgrade to the latest firmware version that no longer uses weak algorithms by default.
CVE-2019-19397 affects several Huawei products including S12700, S1700, S2700, S5700, S6700, S7700, and S9700 firmware versions.
Attackers can exploit CVE-2019-19397 to carry out information leakage attacks due to the use of weak algorithms.
There are no specific workarounds for CVE-2019-19397; the recommended solution is to apply the firmware updates provided by Huawei.