PT-2019-17538 · Huawei · Nip6800+17

Published

2019-12-11

·

Updated

2020-08-24

·

CVE-2019-5256

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Huawei AP2000 version (affected versions not specified) Huawei IPS Module version (affected versions not specified) Huawei NGFW Module version (affected versions not specified) Huawei NIP6300 version (affected versions not specified) Huawei NIP6600 version (affected versions not specified) Huawei NIP6800 version (affected versions not specified) Huawei S5700 version (affected versions not specified) Huawei SVN5600 version (affected versions not specified) Huawei SVN5800 version (affected versions not specified) Huawei SVN5800-C version (affected versions not specified) Huawei SeMG9811 version (affected versions not specified) Huawei Secospace AntiDDoS8000 version (affected versions not specified) Huawei Secospace USG6300 version (affected versions not specified) Huawei Secospace USG6500 version (affected versions not specified) Huawei Secospace USG6600 version (affected versions not specified) Huawei USG6000V version (affected versions not specified) Huawei eSpace U1981 version (affected versions not specified)
Description The system has a null pointer dereference issue, where it dereferences a pointer that it expects to be valid, but is NULL. A local attacker could exploit this by sending crafted parameters, potentially causing a denial of service and the process to reboot.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

DoS

NULL Pointer Dereference

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2019-5256

Affected Products

Ap2000
Huawei Vrp
Ips Module
Ngfw Module
Nip6300
Nip6600
Nip6800
S5700
Svn5600
Svn5800
Svn5800-C
Semg9811
Secospace Antiddos8000
Secospace Usg6300
Secospace Usg6500
Secospace Usg6600
Usg6000V
Espace U1981