Denial of Service Vulnerability in Huawei Network Devices
CVE-2020-1870

7.5HIGH

Key Information:

Vendor
Huawei
Vendor
CVE Published:
29 May 2020

Summary

A denial of service vulnerability exists in certain Huawei network devices due to improper memory management, which can lead to memory leakage under specific conditions. By exploiting this vulnerability, attackers may achieve a denial of service, disrupting the availability of the affected devices. This issue has been identified in multiple versions of Huawei's CloudEngine and NE series equipment, making it essential for users to apply the latest security patches.

Affected Version(s)

CloudEngine 12800 V200R019C00SPC800

CloudEngine 5800 V200R019C00SPC800

CloudEngine 6800 V200R005C20SPC800

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.