QID 43889

Date Published: 2021-10-27

QID 43889: Huawei Router Buffer Overflow Vulnerability (Huawei-SA-20171215-01-overflow-en)

There is buffer overflow vulnerability in some Huawei products. An unauthenticated, remote attacker may send specially crafted certificates to the affected products. Due to insufficient validation of the certificates, successful exploit may cause buffer overflow and some service abnormal. (Vulnerability ID: HWPSIRT-2017-07013)
This vulnerability has been assigned a Common Vulnerabilities and Exposures (CVE) ID: CVE-2017-17298.

Successful exploit may cause buffer overflow and some service abnormal.

  • CVSS V3 rated as Medium - 5.3 severity.
  • CVSS V2 rated as Medium - 5 severity.
  • Solution
    Refer to Huawei security advisory huawei-sa-20171215-01-overflow-en for updates and patch information.
    Vendor References

    CVEs related to QID 43889

    Software Advisories
    Advisory ID Software Component Link
    Huawei-SA-20171215-01-overflow-en URL Logo www.huawei.com/en/psirt/security-advisories/huawei-sa-20171215-01-overflow-en