PT-2020-15107 · Huawei · E6878-370

Published

2020-05-29

·

Updated

2020-06-02

·

CVE-2020-1832

CVSS v3.1

8.8

High

VectorAV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions E6878-370 products with versions of 10.0.3.1(H557SP27C233) and 10.0.3.1(H563SP1C00)
Description The issue is related to a stack buffer overflow. It occurs because the program copies an input buffer to an output buffer without proper verification. An attacker on the adjacent network could exploit this by sending a crafted message. Successful exploitation could lead to a stack buffer overflow, potentially resulting in malicious code execution.
Recommendations For version 10.0.3.1(H557SP27C233), update to a version that fixes the stack buffer overflow issue. For version 10.0.3.1(H563SP1C00), update to a version that fixes the stack buffer overflow issue. As a temporary workaround, consider restricting access to the network to minimize the risk of exploitation.

Fix

Memory Corruption

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2020-1832

Affected Products

E6878-370