CVE-2017-15344
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
Huawei AR3200 with software V200R006C10, V200R006C11, V200R007C00, V200R007C01, V200R007C02, V200R008C00, V200R008C10, V200R008C20, V200R008C30 has an integer overflow vulnerability. The software does not sufficiently validate certain field in SCTP messages, a remote unauthenticated attacker could send a crafted SCTP message to the device. Successful exploit could cause system reboot.
Huawei AR3200 con software V200R006C10, V200R006C11, V200R007C00, V200R007C01, V200R007C02, V200R008C00, V200R008C10, V200R008C20 y V200R008C30 tiene una vulnerabilidad de desbordamiento de enteros. El software no valida suficientemente ciertos campos en los mensajes SCTP, por lo que un atacante remoto no autenticado podría enviar un mensaje SCTP manipulado al dispositivo. Una explotación con éxito podría provocar el rearranque del sistema.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2017-10-14 CVE Reserved
- 2018-02-15 CVE Published
- 2024-08-05 CVE Updated
- 2025-03-30 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-190: Integer Overflow or Wraparound
CAPEC
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20171129-02-sctp-en | 2018-02-22 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Huawei Search vendor "Huawei" | Ar120-s Firmware Search vendor "Huawei" for product "Ar120-s Firmware" | v200r006c10 Search vendor "Huawei" for product "Ar120-s Firmware" and version "v200r006c10" | - |
Affected
| in | Huawei Search vendor "Huawei" | Ar3200 Search vendor "Huawei" for product "Ar3200" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Ar120-s Firmware Search vendor "Huawei" for product "Ar120-s Firmware" | v200r007c00 Search vendor "Huawei" for product "Ar120-s Firmware" and version "v200r007c00" | - |
Affected
| in | Huawei Search vendor "Huawei" | Ar3200 Search vendor "Huawei" for product "Ar3200" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Ar120-s Firmware Search vendor "Huawei" for product "Ar120-s Firmware" | v200r008c20 Search vendor "Huawei" for product "Ar120-s Firmware" and version "v200r008c20" | - |
Affected
| in | Huawei Search vendor "Huawei" | Ar3200 Search vendor "Huawei" for product "Ar3200" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Ar120-s Firmware Search vendor "Huawei" for product "Ar120-s Firmware" | v200r008c30 Search vendor "Huawei" for product "Ar120-s Firmware" and version "v200r008c30" | - |
Affected
| in | Huawei Search vendor "Huawei" | Ar3200 Search vendor "Huawei" for product "Ar3200" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Ar1200 Firmware Search vendor "Huawei" for product "Ar1200 Firmware" | v200r007c01 Search vendor "Huawei" for product "Ar1200 Firmware" and version "v200r007c01" | - |
Affected
| in | Huawei Search vendor "Huawei" | Ar3200 Search vendor "Huawei" for product "Ar3200" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Ar1200 Firmware Search vendor "Huawei" for product "Ar1200 Firmware" | v200r007c02 Search vendor "Huawei" for product "Ar1200 Firmware" and version "v200r007c02" | - |
Affected
| in | Huawei Search vendor "Huawei" | Ar3200 Search vendor "Huawei" for product "Ar3200" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Ar3200 Firmware Search vendor "Huawei" for product "Ar3200 Firmware" | v200r006c11 Search vendor "Huawei" for product "Ar3200 Firmware" and version "v200r006c11" | - |
Affected
| in | Huawei Search vendor "Huawei" | Ar3200 Search vendor "Huawei" for product "Ar3200" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Ar3200 Firmware Search vendor "Huawei" for product "Ar3200 Firmware" | v200r008c00 Search vendor "Huawei" for product "Ar3200 Firmware" and version "v200r008c00" | - |
Affected
| in | Huawei Search vendor "Huawei" | Ar3200 Search vendor "Huawei" for product "Ar3200" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Ar3200 Firmware Search vendor "Huawei" for product "Ar3200 Firmware" | v200r008c10 Search vendor "Huawei" for product "Ar3200 Firmware" and version "v200r008c10" | - |
Affected
| in | Huawei Search vendor "Huawei" | Ar3200 Search vendor "Huawei" for product "Ar3200" | - | - |
Safe
|