Buffer overflow in the Application Specific Packet Filtering (ASPF) functionality in the Huawei IPS Module, NGFW Module, NIP6300, NIP6600, Secospace USG6300, USG6500, USG6600, USG9500, and AntiDDoS8000 devices with software before V500R001C20SPC100 allows remote attackers to cause a denial of service or execute arbitrary code via a crafted packet, related to "illegitimate parameters."
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HHuawei Ips Module
HWHuaweiall versionsHuawei Ips Module Firmware
OSHuaweiv500r001c00Huawei Ngfw Module
HWHuaweiall versionsHuawei Ngfw Module Firmware
OSHuaweiv500r001c00Huawei Nip6300
HWHuaweiall versionsHuawei Nip6300 Firmware
OSHuaweiv500r001c00Huawei Nip6600
HWHuaweiall versionsHuawei Nip6600 Firmware
OSHuaweiv500r001c00Huawei Secospace Antiddos8000
HWHuaweiall versionsHuawei Secospace Antiddos8000 Firmware
OSHuaweiv500r001c00Huawei Secospace Usg6300
HWHuaweiall versionsHuawei Secospace Usg6300 Firmware
OSHuaweiv500r001c00Huawei Secospace Usg6500
HWHuaweiall versionsHuawei Secospace Usg6500 Firmware
OSHuaweiv500r001c00Huawei Secospace Usg6600
HWHuaweiall versionsHuawei Secospace Usg6600 Firmware
OSHuaweiv500r001c00Huawei Usg9500
HWHuaweiall versionsHuawei Usg9500 Firmware
OSHuaweiv500r001c00
Related vulnerabilities
Huawei IPS/NGFW/NIP/USG — obejście uwierzytelnienia (Auth Bypass)
There is an out of bounds write vulnerability in some Huawei products. The vulnerability is caused by a functi...
There is insecure algorithm vulnerability in Huawei products. A module uses less random input in a secure mech...
There is a denial of service vulnerability in some huawei products. In specific scenarios, due to the improper...
There is a denial of service vulnerability in Huawei products. A module cannot deal with specific messages cor...