CVE-2017-15342
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
Huawei DP300 V500R002C00, TE60 V600R006C00, TP3106 V100R002C00, eSpace U1981 V200R003C30SPC100 have a denial of service vulnerability. The software does not correctly calculate the rest size in a buffer when handling SSL connections. A remote unauthenticated attacker could send a lot of crafted SSL messages to the device, successful exploit could cause no space in the buffer and then denial of service.
Huawei DP300 V500R002C00, TE60 V600R006C00, TP3106 V100R002C00 y eSpace U1981 V200R003C30SPC100 tienen una vulnerabilidad de denegación de servicio. El software no calcula correctamente el tamaño en reposo en un búfer al gestionar las conexiones SSL. Un atacante remoto no autenticado podría enviar una gran cantidad de mensajes SSL manipulados al dispositivo, por lo que la explotación con éxito haría que el búfer se quede sin espacio y provocaría una denegación de servicio.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2017-10-14 CVE Reserved
- 2018-02-15 CVE Published
- 2024-08-05 CVE Updated
- 2024-10-28 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer
CAPEC
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20171206-01-ssl-en | 2018-02-22 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Huawei Search vendor "Huawei" | Dp300 Firmware Search vendor "Huawei" for product "Dp300 Firmware" | v500r002c00 Search vendor "Huawei" for product "Dp300 Firmware" and version "v500r002c00" | - |
Affected
| in | Huawei Search vendor "Huawei" | Dp300 Search vendor "Huawei" for product "Dp300" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Te60 Firmware Search vendor "Huawei" for product "Te60 Firmware" | v600r006c00 Search vendor "Huawei" for product "Te60 Firmware" and version "v600r006c00" | - |
Affected
| in | Huawei Search vendor "Huawei" | Te60 Search vendor "Huawei" for product "Te60" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Tp3106 Firmware Search vendor "Huawei" for product "Tp3106 Firmware" | v100r002c00 Search vendor "Huawei" for product "Tp3106 Firmware" and version "v100r002c00" | - |
Affected
| in | Huawei Search vendor "Huawei" | Tp3106 Search vendor "Huawei" for product "Tp3106" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Espace U1981 Firmware Search vendor "Huawei" for product "Espace U1981 Firmware" | v200r003c30spc100 Search vendor "Huawei" for product "Espace U1981 Firmware" and version "v200r003c30spc100" | - |
Affected
| in | Huawei Search vendor "Huawei" | Espace U1981 Search vendor "Huawei" for product "Espace U1981" | - | - |
Safe
|