First published: Mon Jul 06 2020(Updated: )
ChangXiang 8 Plus with versions earlier than 9.1.0.136(C00E121R1P6T8) have a denial of service vulnerability. The device does not properly handle certain message from base station, the attacker could craft a fake base station to launch the attack. Successful exploit could cause a denial of signal service condition.
Credit: psirt@huawei.com
Affected Software | Affected Version | How to fix |
---|---|---|
Huawei Changxiang 8 Plus Firmware | <9.1.0.136\(c00e121r1p6t8\) | |
Huawei Changxiang 8 Plus |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for ChangXiang 8 Plus is CVE-2020-1837.
ChangXiang 8 Plus versions earlier than 9.1.0.136(C00E121R1P6T8) are affected.
The severity rating of CVE-2020-1837 is medium with a severity value of 5.3.
An attacker can exploit CVE-2020-1837 by crafting a fake base station and sending certain messages to the vulnerable device.
To fix CVE-2020-1837, update to version 9.1.0.136(C00E121R1P6T8) or later of the ChangXiang 8 Plus firmware.