QID 43871

Date Published: 2021-10-20

QID 43871: Huawei Router Three Denial of Service (DoS) Vulnerabilities In The SIP Module (huawei-sa-20200115-01-sip-en)

There are three denial of service (DoS) vulnerabilities in the SIP module of some Huawei products. A remote attacker could exploit these three vulnerabilities by sending specially crafted messages to the affected device. Due to the insufficient verification of the packets, a successful exploit could allow the attacker to cause a buffer overflow and dead loop, leading to DoS condition. (Vulnerability ID: HWPSIRT-2017-03027,HWPSIRT-2017-03028 and HWPSIRT-2017-03029)

Successful exploit of this vulnerability could lead to a DoS condition.

  • CVSS V3 rated as High - 7.5 severity.
  • CVSS V2 rated as Medium - 5 severity.
  • Solution
    Refer to Huawei security advisory huawei-sa-20200115-01-sip-en for updates and patch information.
    Vendor References

    CVEs related to QID 43871

    Software Advisories
    Advisory ID Software Component Link
    huawei-sa-20200115-01-sip-en URL Logo www.huawei.com/en/psirt/security-advisories/huawei-sa-20200115-01-sip-en