QID 43882

Date Published: 2021-10-26

QID 43882: Huawei Switch Out-of-bounds Read Vulnerability (Huawei-SA-20200122-09)

There is an out-of-bounds read vulnerability in several products. The software reads data past the end of the intended buffer when parsing certain crafted DHCP messages. Successful exploit could cause certain service abnormal. (Vulnerability ID: HWPSIRT-2019-12425) This vulnerability has been assigned a Common Vulnerabilities and Exposures (CVE) ID: CVE-2020-1866.

Successful exploit could cause certain service abnormal

  • CVSS V3 rated as High - 6.5 severity.
  • CVSS V2 rated as Medium - 3.3 severity.
  • Solution
    Refer to Huawei security advisory huawei-sa-20200122-09 for updates and patch information.

    CVEs related to QID 43882

    Software Advisories
    Advisory ID Software Component Link
    Huawei-SA-20200122-09 URL Logo www.huawei.com/en/psirt/security-advisories/huawei-sa-20200122-09-eudemon-en