← Back

CVE-2017-17250

nvd nist
Published: Mar 9, 2018Modified: Nov 21, 2024

JSON object

Loading...
6.5
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Exploitability: 2.8 / Impact: 3.6
Source: NVD

Description

Huawei AR120-S V200R005C32; AR1200 V200R005C32; AR1200-S V200R005C32; AR150 V200R005C32; AR150-S V200R005C32; AR160 V200R005C32; AR200 V200R005C32; AR200-S V200R005C32; AR2200-S V200R005C32; AR3200 V200R005C32; V200R007C00; AR510 V200R005C32; NetEngine16EX V200R005C32; SRG1300 V200R005C32; SRG2300 V200R005C32; SRG3300 V200R005C32 have an out-of-bounds write vulnerability. When a user executes a query command after the device received an abnormal OSPF message, the software writes data past the end of the intended buffer due to the insufficient verification of the input data. An unauthenticated, remote attacker could exploit this vulnerability by sending abnormal OSPF messages to the device. A successful exploit could cause the system to crash.

Affected (30)

21 products
Ar120 S Firmware
Ar1200 Firmware
Ar1200 S Firmware
Ar150 Firmware
Ar160 Firmware
Ar200 Firmware
Ar200 S Firmware
Ar150 S Firmware
Ar2200 S Firmware
Ar3200 Firmware
Ar510 Firmware
Netengine16ex Firmware
S12700 Firmware
S2700 Firmware
S5700 Firmware
S6700 Firmware
S7700 Firmware
S9700 Firmware
Srg1300 Firmware
Srg2300 Firmware
Srg3300 Firmware
Configuration A
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Version v200r005c32
Running on/withPlatform Versions
Huawei
Ar120 S
All versions
Configuration B
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Version v200r005c32
Running on/withPlatform Versions
Huawei
Ar1200
All versions
Configuration C
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Version v200r005c32
Running on/withPlatform Versions
Huawei
Ar1200 S
All versions
Configuration D
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Version v200r005c32
Running on/withPlatform Versions
Huawei
Ar150
All versions
Configuration E
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Version v200r005c32
Running on/withPlatform Versions
Huawei
Ar160
All versions
Configuration F
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Version v200r005c32
Running on/withPlatform Versions
Huawei
Ar200
All versions
Configuration G
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Version v200r005c32
Running on/withPlatform Versions
Huawei
Ar200 S
All versions
Configuration H
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Version v200r005c32
Running on/withPlatform Versions
Huawei
Ar150 S
All versions
Configuration I
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Version v200r005c32
Running on/withPlatform Versions
Huawei
Ar2200 S
All versions
Configuration J
2 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Huawei
Version v200r005c32
Version v200r007c00
Running on/withPlatform Versions
Huawei
Ar3200
All versions
Configuration K
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Version v200r005c32
Running on/withPlatform Versions
Huawei
Ar510
All versions
Configuration L
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Version v200r005c32
Running on/withPlatform Versions
Huawei
Netengine16ex
All versions
Configuration M
3 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Huawei
Version v200r007c00
Version v200r007c01
Version v200r008c00
Running on/withPlatform Versions
Huawei
S12700
All versions
Configuration N
3 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Huawei
Version v200r006c10
Version v200r007c00
Version v200r008c00
Running on/withPlatform Versions
Huawei
S2700
All versions
Configuration O
2 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Huawei
Version v200r007c00
Version v200r008c00
Running on/withPlatform Versions
Huawei
S5700
All versions
Configuration P
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Version v200r008c00
Running on/withPlatform Versions
Huawei
S6700
All versions
Configuration Q
2 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Huawei
Version v200r007c00
Version v200r008c00
Running on/withPlatform Versions
Huawei
S7700
All versions
Configuration R
3 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Huawei
Version v200r007c00
Version v200r007c01
Version v200r008c00
Running on/withPlatform Versions
Huawei
S9700
All versions
Configuration S
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Version v200r005c32
Running on/withPlatform Versions
Huawei
Srg1300
All versions
Configuration T
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Version v200r005c32
Running on/withPlatform Versions
Huawei
Srg2300
All versions
Configuration U
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Version v200r005c32
Running on/withPlatform Versions
Huawei
Srg3300
All versions

References (2)

Timeline

No history available yet.