CVE-2021-39995: Medium severity huawei ecns280 vulnerability
Some Huawei products use the OpenHpi software for hardware management. A function that parses data returned by OpenHpi contains an out-of-bounds read vulnerability that could lead to a denial of service. Affected product versions include: eCNS280TD V100R005C10; eSE620X vESS V100R001C10SPC200, V100R001C20SPC200, V200R001C00SPC300.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2021-39995?
CVE-2021-39995 is a vulnerability found in some Huawei products that use the OpenHpi software for hardware management.
What is the severity of CVE-2021-39995?
The severity of CVE-2021-39995 is medium with a CVSS score of 6.5.
Which Huawei products are affected by CVE-2021-39995?
Huawei products eCNS280_TD V100R005C10 and eSE620X vESS V100R001C10SPC200, V100R001C20SPC200, and V200R001C00SPC300 are affected by CVE-2021-39995.
What is the impact of CVE-2021-39995?
CVE-2021-39995 could lead to a denial of service due to an out-of-bounds read vulnerability in the OpenHpi software.
How can I fix CVE-2021-39995?
To fix CVE-2021-39995, you should update the affected Huawei products to the latest firmware version provided by Huawei.