CVE-2021-22366: Medium severity huawei ese620x vess vulnerability
There is an out-of-bounds read vulnerability in eSE620X vESS V100R001C10SPC200, V100R001C20SPC200, V200R001C00SPC300. The vulnerability is due to a function that handles an internal message contains an out-of-bounds read vulnerability. An attacker could crafted messages between system process, successful exploit could cause Denial of Service (DoS).
Affected Software
Event History
Frequently Asked Questions
What is CVE-2021-22366?
CVE-2021-22366 is an out-of-bounds read vulnerability in Huawei's eSE620X vESS firmware versions V100R001C10SPC200, V100R001C20SPC200, and V200R001C00SPC300.
What is the severity of CVE-2021-22366?
The severity of CVE-2021-22366 is medium, with a CVSS score of 5.5.
How does CVE-2021-22366 affect Huawei eSE620X vESS firmware?
CVE-2021-22366 affects Huawei's eSE620X vESS firmware versions V100R001C10SPC200, V100R001C20SPC200, and V200R001C00SPC300.
How can an attacker exploit CVE-2021-22366?
An attacker can exploit CVE-2021-22366 by crafting messages between system processes to trigger an out-of-bounds read vulnerability.
Is there a fix for CVE-2021-22366?
For a fix, it is recommended to follow the patches and guidelines provided by Huawei in their security advisory.