First published: Mon Oct 19 2020(Updated: )
E6878-370 versions 10.0.3.1(H557SP27C233),10.0.3.1(H563SP21C233) and E6878-870 versions 10.0.3.1(H557SP27C233),10.0.3.1(H563SP11C233) have a denial of service vulnerability. The system does not properly check some events, an attacker could launch the events continually, successful exploit could cause reboot of the process.
Credit: psirt@huawei.com
Affected Software | Affected Version | How to fix |
---|---|---|
Huawei E6878-370 Firmware | =10.0.3.1\(h557sp27c233\) | |
Huawei E6878-370 Firmware | =10.0.3.1\(h563sp21c233\) | |
Huawei E6878-370 | ||
Huawei E6878-870 Firmware | =10.0.3.1\(h557sp27c233\) | |
Huawei E6878-870 Firmware | =10.0.3.1\(h563sp11c233\) | |
Huawei E6878-870 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-9111 is a denial of service vulnerability found in Huawei E6878-370 and E6878-870 devices running specific firmware versions.
Huawei E6878-370 and E6878-870 devices running firmware versions 10.0.3.1(H557SP27C233), 10.0.3.1(H563SP21C233), and 10.0.3.1(H563SP11C233) are affected.
CVE-2020-9111 has a severity rating of medium with a CVSS score of 4.5.
An attacker can exploit the CVE-2020-9111 vulnerability by launching certain events continuously, causing a denial of service.
The vendor has released a security advisory with mitigation steps for CVE-2020-9111. Please refer to the reference link for more information.