7.8
CVE-2015-8083
- EPSS 0.23%
- Veröffentlicht 19.11.2015 20:59:10
- Zuletzt bearbeitet 12.04.2025 10:46:40
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
An unspecified module in Huawei eSpace U1910, U1911, U1930, U1960, U1980, and U1981 unified gateways with software before V200R003C00SPC300 does not properly initialize memory when processing timeout messages, which allows remote attackers to cause a denial of service (out-of-bounds memory access and device restart) via unknown vectors.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Huawei ≫ Espace Firmware Version <= v100r001c20
Huawei ≫ Espace Unified Gateway U1910 Version-
Huawei ≫ Espace Unified Gateway U1911 Version-
Huawei ≫ Espace Unified Gateway U1930 Version-
Huawei ≫ Espace Unified Gateway U1960 Version-
Huawei ≫ Espace Unified Gateway U1980 Version-
Huawei ≫ Espace Unified Gateway U1981 Version-
Huawei ≫ Espace Unified Gateway U1911 Version-
Huawei ≫ Espace Unified Gateway U1930 Version-
Huawei ≫ Espace Unified Gateway U1960 Version-
Huawei ≫ Espace Unified Gateway U1980 Version-
Huawei ≫ Espace Unified Gateway U1981 Version-
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.23% | 0.426 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.8 | 10 | 6.9 |
AV:N/AC:L/Au:N/C:N/I:N/A:C
|
CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer
The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.