QID 43878

Date Published: 2021-10-27

QID 43878: Huawei Router Out of Bounds Read Vulnerability (huawei-sa-20200415-01-oob-en)

There is a few bytes out-of-bounds read vulnerability in some Huawei products. The software reads data past the end of the intended buffer when parsing certain message, an authenticated attacker could exploit this vulnerability by sending crafted messages to the device. Successful exploit may cause service abnormal in specific scenario.(Vulnerability ID: HWPSIRT-2018-12050)

Successful exploit may cause service abnormal in specific scenario.

  • CVSS V3 rated as High - 6.5 severity.
  • CVSS V2 rated as Medium - 4 severity.
  • Solution
    Refer to Huawei security advisory huawei-sa-20200415-01-oob-en for updates and patch information.
    Vendor References

    CVEs related to QID 43878

    Software Advisories
    Advisory ID Software Component Link
    huawei-sa-20200415-01-oob-en URL Logo www.huawei.com/en/psirt/security-advisories/huawei-sa-20200415-01-oob-en