← Volver a CVEs
CVE-2019-5293
MEDIUM6.5
Descripcion
Some Huawei products have a memory leak vulnerability when handling some messages. A remote attacker with operation privilege could exploit the vulnerability by sending specific messages continuously. Successful exploit may cause some service to be abnormal.
Detalles CVE
Puntuacion CVSS v3.16.5
SeveridadMEDIUM
Vector CVSSCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Vector de ataqueNETWORK
ComplejidadLOW
Privilegios requeridosLOW
Interaccion usuarioNONE
Publicado11/13/2019
Ultima modificacion11/21/2024
Fuentenvd
Avistamientos honeypot0
Productos afectados
huawei:ar120-shuawei:ar120-s_firmwarehuawei:ar1200huawei:ar1200-shuawei:ar1200-s_firmwarehuawei:ar1200_firmwarehuawei:ar150huawei:ar150-shuawei:ar150-s_firmwarehuawei:ar150_firmwarehuawei:ar160huawei:ar160_firmwarehuawei:ar200huawei:ar200-shuawei:ar200-s_firmwarehuawei:ar200_firmwarehuawei:ar2200huawei:ar2200-shuawei:ar2200-s_firmwarehuawei:ar2200_firmwarehuawei:ar3200huawei:ar3200_firmwarehuawei:ar3600huawei:ar3600_firmwarehuawei:netengine16exhuawei:netengine16ex_firmwarehuawei:srg1300huawei:srg1300_firmwarehuawei:srg2300huawei:srg2300_firmwarehuawei:srg3300huawei:srg3300_firmware
Debilidades (CWE)
CWE-401
Referencias
http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20191023-01-memory-en(psirt@huawei.com)
http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20191023-01-memory-en(af854a3a-2127-422b-91ae-364da2661108)
Correlaciones IOC
Sin correlaciones registradas
This product uses data from the NVD API but is not endorsed or certified by the NVD.