← Back

CVE-2017-15344

nvd nist
Published: Feb 15, 2018Modified: Nov 21, 2024

JSON object

Loading...
7.5
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Exploitability: 3.9 / Impact: 3.6
Source: NVD

Description

Huawei AR3200 with software V200R006C10, V200R006C11, V200R007C00, V200R007C01, V200R007C02, V200R008C00, V200R008C10, V200R008C20, V200R008C30 has an integer overflow vulnerability. The software does not sufficiently validate certain field in SCTP messages, a remote unauthenticated attacker could send a crafted SCTP message to the device. Successful exploit could cause system reboot.

Affected (9)

3 products
Ar120 S Firmware
Ar1200 Firmware
Ar3200 Firmware
Configuration A
9 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Huawei
Version v200r006c10
Version v200r007c00
Version v200r008c20
Version v200r008c30
Huawei
Version v200r007c01
Version v200r007c02
Huawei
Version v200r006c11
Version v200r008c00
Version v200r008c10
Running on/withPlatform Versions
Huawei
Ar3200
All versions

References (2)

Timeline

No history available yet.