CVE-2021-22312: Medium severity huawei ips firmware vulnerability
There is a memory leak vulnerability in some Huawei products. An authenticated remote attacker may exploit this vulnerability by sending specific message to the affected product. Due to not release the allocated memory properly, successful exploit may cause some service abnormal. Affected product include some versions of IPS Module, NGFW Module, Secospace USG6300, Secospace USG6500, Secospace USG6600 and USG9500.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2021-22312?
CVE-2021-22312 has a severity rating that indicates it could allow an authenticated remote attacker to exploit the memory leak and potentially disrupt services.
How do I fix CVE-2021-22312?
To fix CVE-2021-22312, you should upgrade to the latest firmware versions provided by Huawei that address this vulnerability.
What products are affected by CVE-2021-22312?
CVE-2021-22312 affects various Huawei products, including certain versions of the IPS module, NGFW module, and USG series firmware.
What are the potential impacts of exploiting CVE-2021-22312?
Exploiting CVE-2021-22312 may result in service abnormalities due to improper memory management.
Is authentication required to exploit CVE-2021-22312?
Yes, an authenticated attacker is required to exploit CVE-2021-22312 by sending specific messages to the affected products.