CVE Feed

    Dashboard / CVE / CVE-2017-17143

    CVE-2017-17143

    SIP module in Huawei DP300 V500R002C00; V500R002C00SPC100; V500R002C00SPC200; V500R002C00SPC300; V500R002C00SPC400; V500R002C00SPC500; V500R002C00SPC600; V500R002C00SPC800; V500R002C00SPC900; V500R002C00SPCa00; RP200 V500R002C00SPC200; V600R006C00; V600R006C00SPC200; RSE6500 V500R002C00SPC100; V500R002C00SPC200; V500R002C00SPC300; V500R002C00SPC300T; V500R002C00SPC500; V500R002C00SPC600; V500R002C00SPC700; V500R002C00T; TE30 V100R001C10; V100R001C10SPC100; V100R001C10SPC200B010; V100R001C10SPC300; V100R001C10SPC500; V100R001C10SPC600; V100R001C10SPC700B010; V100R001C10SPC800; V500R002C00SPC200; V500R002C00SPC500; V500R002C00SPC600; V500R002C00SPC700; V500R002C00SPC900; V500R002C00SPCb00; V600R006C00; TE40 V500R002C00SPC600; V500R002C00SPC700; V500R002C00SPC900; V500R002C00SPCb00; V600R006C00; V600R006C00SPC200; TE50 V500R002C00SPC600; V500R002C00SPC700; V500R002C00SPCb00; V600R006C00; V600R006C00SPC200; TE60 V100R001C01SPC100; V100R001C01SPC107TB010; V100R001C10; V100R001C10SPC300; V100R001C10SPC400; V100R001C10SPC500; V100R001C10SPC600; V100R001C10SPC700; V100R001C10SPC800; V100R001C10SPC900; V500R002C00; V500R002C00SPC100; V500R002C00SPC200; V500R002C00SPC300; V500R002C00SPC600; V500R002C00SPC700; V500R002C00SPC800; V500R002C00SPC900; V500R002C00SPCa00; V500R002C00SPCb00; V500R002C00SPCd00; V600R006C00; V600R006C00SPC100; V600R006C00SPC200; V600R006C00SPC300; TP3106 V100R002C00; V100R002C00SPC200; V100R002C00SPC400; V100R002C00SPC600; V100R002C00SPC700; V100R002C00SPC800; TP3206 V100R002C00; V100R002C00SPC200; V100R002C00SPC400; V100R002C00SPC600; V100R002C00SPC700; V100R002C10; ViewPoint 9030 V100R011C02SPC100; V100R011C03B012SP15; V100R011C03B012SP16; V100R011C03B015SP03; V100R011C03LGWL01SPC100; V100R011C03SPC100; V100R011C03SPC200; V100R011C03SPC300; V100R011C03SPC400; V100R011C03SPC500; eSpace U1960 V200R003C30SPC200; eSpace U1981 V100R001C20SPC700; V200R003C20SPCa00 has an overflow vulnerability that the module cannot parse a malformed SIP message when validating variables. Attacker can exploit it to make one process reboot at random.

    Published:Mar 5, 2018
    Last Modified:Nov 21, 2024
    EPS:Mar 5, 2018
    EPSS Score:0.00176
    CVSS Score:5.3

    Affected Products

    Vendor
    Huawei
    Product
    Dp300
    Vendor
    Huawei
    Product
    Dp300 Firmware
    Vendor
    Huawei
    Product
    Espace U1960
    Vendor
    Huawei
    Product
    Espace U1960 Firmware
    Vendor
    Huawei
    Product
    Espace U1981
    Vendor
    Huawei
    Product
    Espace U1981 Firmware
    Vendor
    Huawei
    Product
    Rp200
    Vendor
    Huawei
    Product
    Rp200 Firmware
    Vendor
    Huawei
    Product
    Rse6500
    Vendor
    Huawei
    Product
    Rse6500 Firmware
    Vendor
    Huawei
    Product
    Te30
    Vendor
    Huawei
    Product
    Te30 Firmware
    Vendor
    Huawei
    Product
    Te40
    Vendor
    Huawei
    Product
    Te40 Firmware
    Vendor
    Huawei
    Product
    Te50
    Vendor
    Huawei
    Product
    Te50 Firmware
    Vendor
    Huawei
    Product
    Te60
    Vendor
    Huawei
    Product
    Te60 Firmware
    Vendor
    Huawei
    Product
    Tp3106
    Vendor
    Huawei
    Product
    Tp3106 Firmware
    Vendor
    Huawei
    Product
    Tp3206
    Vendor
    Huawei
    Product
    Tp3206 Firmware
    Vendor
    Huawei
    Product
    Viewpoint 9030
    Vendor
    Huawei
    Product
    Viewpoint 9030 Firmware

    Exploits

    No exploit reference

    Related CVEs

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High