QID 43892

Date Published: 2021-10-27

QID 43892: Huawei Router Input Validation Vulnerability (Huawei-SA-20171206-01-h323-en)

There is an insufficient validation vulnerability in some Huawei products. Since packet validation is insufficient, an unauthenticated attacker may send special H323 packets to exploit the vulnerability. Successful exploit could allow the attacker to send malicious packets and result in DOS attacks. (Vulnerability ID: HWPSIRT-2017-03125)
This vulnerability has been assigned a Common Vulnerabilities and Exposures (CVE) ID: CVE-2017-17151.

Successful exploit could allow the attacker to send malicious packets and result in DOS attacks.

  • CVSS V3 rated as Medium - 5.9 severity.
  • CVSS V2 rated as Medium - 4.3 severity.
  • Solution
    Refer to Huawei security advisory huawei-sa-20171206-01-h323-en for updates and patch information.
    Vendor References

    CVEs related to QID 43892

    Software Advisories
    Advisory ID Software Component Link
    Huawei-SA-20171206-01-h323-en URL Logo www.huawei.com/en/psirt/security-advisories/huawei-sa-20171206-01-h323-en