CVE-2017-17162
Summary
| CVE | CVE-2017-17162 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2018-02-15 16:29:00 UTC |
| Updated | 2019-10-03 00:03:00 UTC |
| Description | Huawei Secospace USG6600 V500R001C30SPC100, Secospace USG6600 V500R001C30SPC200, Secospace USG6600 V500R001C30SPC300, USG9500 V500R001C30SPC100, USG9500 V500R001C30SPC200, USG9500 V500R001C30SPC300 have a memory leak vulnerability due to memory don't be released when an local authenticated attacker execute special commands many times. An attacker could exploit it to cause memory leak, which may further lead to system exceptions. |
Risk And Classification
Problem Types: CWE-772
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Huawei | Secospace Usg6600 | - | All | All | All |
| Hardware | Huawei | Secospace Usg6600 | - | All | All | All |
| Operating System | Huawei | Secospace Usg6600 Firmware | v500r001c30spc100 | All | All | All |
| Operating System | Huawei | Secospace Usg6600 Firmware | v500r001c30spc200 | All | All | All |
| Operating System | Huawei | Secospace Usg6600 Firmware | v500r001c30spc300 | All | All | All |
| Operating System | Huawei | Secospace Usg6600 Firmware | v500r001c30spc100 | All | All | All |
| Operating System | Huawei | Secospace Usg6600 Firmware | v500r001c30spc200 | All | All | All |
| Operating System | Huawei | Secospace Usg6600 Firmware | v500r001c30spc300 | All | All | All |
| Hardware | Huawei | Usg9500 | - | All | All | All |
| Hardware | Huawei | Usg9500 | - | All | All | All |
| Operating System | Huawei | Usg9500 Firmware | v500r001c30spc100 | All | All | All |
| Operating System | Huawei | Usg9500 Firmware | v500r001c30spc200 | All | All | All |
| Operating System | Huawei | Usg9500 Firmware | v500r001c30spc300 | All | All | All |
| Operating System | Huawei | Usg9500 Firmware | v500r001c30spc100 | All | All | All |
| Operating System | Huawei | Usg9500 Firmware | v500r001c30spc200 | All | All | All |
| Operating System | Huawei | Usg9500 Firmware | v500r001c30spc300 | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Security Advisory - Memory Leak Vulnerability in Some Huawei FireWall Products | CONFIRM | www.huawei.com | Vendor Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.