QID 43881

Date Published: 2021-10-26

QID 43881: Huawei Switch Use-after-free Vulnerability (Huawei-SA-20210210-01)

There is a use-after-free vulnerability in Huawei product. A module cannot deal with specific operations in special scenarios. Attackers can exploit this vulnerability by performing malicious operations. This can cause memory use-after-free, compromising normal service. (Vulnerability ID: HWPSIRT-2020-11444)

Attackers can exploit this vulnerability by performing malicious operations. This can cause memory use-after-free, compromising normal service.

  • CVSS V3 rated as Medium - 5.3 severity.
  • CVSS V2 rated as Medium - 5 severity.
  • Solution
    Refer to Huawei security advisory huawei-sa-20210210-01 for updates and patch information.

    CVEs related to QID 43881

    Software Advisories
    Advisory ID Software Component Link
    huawei-sa-20210210-01 URL Logo www.huawei.com/en/psirt/security-advisories/huawei-sa-20210210-01-uaf-en