4.3

CVE-2017-15337

The SIP module in Huawei DP300 V500R002C00, IPS Module V100R001C10, V100R001C20, V100R001C30, V500R001C00, V500R001C20, V500R001C30, V500R001C50, NGFW Module V100R001C10, V100R001C20, V100R001C30, V500R001C00, V500R001C20, V500R002C00, V500R002C10, NIP6300 V500R001C00, V500R001C20, V500R001C30, V500R001C50, NIP6600 V500R001C00, V500R001C20, V500R001C30, V500R001C50, NIP6800 V500R001C50, RP200 V500R002C00, V600R006C00, SVN5600 V200R003C00, V200R003C10, SVN5800 V200R003C00, V200R003C10, SVN5800-C V200R003C00, V200R003C10, SeMG9811 V300R001C01, Secospace USG6300 V100R001C10, V100R001C20, V100R001C30, V500R001C00, V500R001C20, V500R001C30, V500R001C50, Secospace USG6500 V100R001C10, V100R001C20, V100R001C30, V500R001C00, V500R001C20, V500R001C30, V500R001C50, Secospace USG6600 V100R001C00, V100R001C20, V100R001C30, V500R001C00, V500R001C20, V500R001C30, V500R001C50, TE30 V100R001C02, V100R001C10, V500R002C00, V600R006C00, TE40 V500R002C00, V600R006C00, TE50 V500R002C00, V600R006C00, TE60 V100R001C01, V100R001C10, V500R002C00, V600R006C00, USG9500 V500R001C00, V500R001C20, V500R001C30, USG9520 V300R001C01, V300R001C20, USG9560 V300R001C01, V300R001C20, USG9580 V300R001C01, V300R001C20, VP9660 V200R001C02, V200R001C30, V500R002C00, V500R002C10, ViewPoint 8660 V100R008C03, ViewPoint 9030 V100R011C02, V100R011C03, eSpace U1981 V100R001C20, V200R003C00, V200R003C20, V200R003C30 has a buffer overflow vulnerability. An attacker would have to find a way to craft specific messages to the affected products. Due to the insufficient validation for SIP messages, successful exploit may cause services abnormal.

Data is provided by the National Vulnerability Database (NVD)
HuaweiDp300 Firmware Versionv500r002c00
   HuaweiDp300 Version-
HuaweiIps Module Firmware Versionv100r001c10
   HuaweiIps Module Version-
HuaweiIps Module Firmware Versionv100r001c20
   HuaweiIps Module Version-
HuaweiIps Module Firmware Versionv100r001c30
   HuaweiIps Module Version-
HuaweiIps Module Firmware Versionv500r001c00
   HuaweiIps Module Version-
HuaweiIps Module Firmware Versionv500r001c20
   HuaweiIps Module Version-
HuaweiIps Module Firmware Versionv500r001c30
   HuaweiIps Module Version-
HuaweiIps Module Firmware Versionv500r001c50
   HuaweiIps Module Version-
HuaweiNgfw Module Firmware Versionv100r001c10
   HuaweiNgfw Module Version-
HuaweiNgfw Module Firmware Versionv100r001c20
   HuaweiNgfw Module Version-
HuaweiNgfw Module Firmware Versionv100r001c30
   HuaweiNgfw Module Version-
HuaweiNgfw Module Firmware Versionv500r001c00
   HuaweiNgfw Module Version-
HuaweiNgfw Module Firmware Versionv500r001c20
   HuaweiNgfw Module Version-
HuaweiNgfw Module Firmware Versionv500r002c00
   HuaweiNgfw Module Version-
HuaweiNgfw Module Firmware Versionv500r002c10
   HuaweiNgfw Module Version-
HuaweiNip6300 Firmware Versionv500r001c00
   HuaweiNip6300 Version-
HuaweiNip6300 Firmware Versionv500r001c20
   HuaweiNip6300 Version-
HuaweiNip6300 Firmware Versionv500r001c30
   HuaweiNip6300 Version-
HuaweiNip6300 Firmware Versionv500r001c50
   HuaweiNip6300 Version-
HuaweiNip6600 Firmware Versionv500r001c00
   HuaweiNip6600 Version-
HuaweiNip6600 Firmware Versionv500r001c20
   HuaweiNip6600 Version-
HuaweiNip6600 Firmware Versionv500r001c30
   HuaweiNip6600 Version-
HuaweiNip6600 Firmware Versionv500r001c50
   HuaweiNip6600 Version-
HuaweiNip6800 Firmware Versionv500r001c50
   HuaweiNip6800 Version-
HuaweiRp200 Firmware Versionv500r002c00
   HuaweiRp200 Version-
HuaweiRp200 Firmware Versionv600r006c0
   HuaweiRp200 Version-
HuaweiSvn5600 Firmware Versionv200r003c00
   HuaweiSvn5600 Version-
HuaweiSvn5600 Firmware Versionv200r003c10
   HuaweiSvn5600 Version-
HuaweiSvn5800 Firmware Versionv200r003c00
   HuaweiSvn5800 Version-
HuaweiSvn5800 Firmware Versionv200r003c10
   HuaweiSvn5800 Version-
HuaweiSvn5800-c Firmware Versionv200r003c00
   HuaweiSvn5800-c Version-
HuaweiSvn5800-c Firmware Versionv200r003c10
   HuaweiSvn5800-c Version-
HuaweiSemg9811 Firmware Versionv300r001c01
   HuaweiSemg9811 Version-
HuaweiSecospace Usg6300 Firmware Versionv100r001c10
   HuaweiSecospace Usg6300 Version-
HuaweiSecospace Usg6300 Firmware Versionv100r001c20
   HuaweiSecospace Usg6300 Version-
HuaweiSecospace Usg6300 Firmware Versionv100r001c30
   HuaweiSecospace Usg6300 Version-
HuaweiSecospace Usg6300 Firmware Versionv500r001c00
   HuaweiSecospace Usg6300 Version-
HuaweiSecospace Usg6300 Firmware Versionv500r001c20
   HuaweiSecospace Usg6300 Version-
HuaweiSecospace Usg6300 Firmware Versionv500r001c30
   HuaweiSecospace Usg6300 Version-
HuaweiSecospace Usg6300 Firmware Versionv500r001c50
   HuaweiSecospace Usg6300 Version-
HuaweiSecospace Usg6500 Firmware Versionv100r001c10
   HuaweiSecospace Usg6500 Version-
HuaweiSecospace Usg6500 Firmware Versionv100r001c20
   HuaweiSecospace Usg6500 Version-
HuaweiSecospace Usg6500 Firmware Versionv100r001c30
   HuaweiSecospace Usg6500 Version-
HuaweiSecospace Usg6500 Firmware Versionv500r001c00
   HuaweiSecospace Usg6500 Version-
HuaweiSecospace Usg6500 Firmware Versionv500r001c20
   HuaweiSecospace Usg6500 Version-
HuaweiSecospace Usg6500 Firmware Versionv500r001c30
   HuaweiSecospace Usg6500 Version-
HuaweiSecospace Usg6500 Firmware Versionv500r001c50
   HuaweiSecospace Usg6500 Version-
HuaweiSecospace Usg6600 Firmware Versionv100r001c00
   HuaweiSecospace Usg6600 Version-
HuaweiSecospace Usg6600 Firmware Versionv100r001c20
   HuaweiSecospace Usg6600 Version-
HuaweiSecospace Usg6600 Firmware Versionv100r001c30
   HuaweiSecospace Usg6600 Version-
HuaweiSecospace Usg6600 Firmware Versionv500r001c00
   HuaweiSecospace Usg6600 Version-
HuaweiSecospace Usg6600 Firmware Versionv500r001c20
   HuaweiSecospace Usg6600 Version-
HuaweiSecospace Usg6600 Firmware Versionv500r001c30
   HuaweiSecospace Usg6600 Version-
HuaweiSecospace Usg6600 Firmware Versionv500r001c50
   HuaweiSecospace Usg6600 Version-
HuaweiTe30 Firmware Versionv100r001c02
   HuaweiTe30 Version-
HuaweiTe30 Firmware Versionv100r001c10
   HuaweiTe30 Version-
HuaweiTe30 Firmware Versionv500r002c00
   HuaweiTe30 Version-
HuaweiTe30 Firmware Versionv600r006c00
   HuaweiTe30 Version-
HuaweiTe40 Firmware Versionv500r002c00
   HuaweiTe40 Version-
HuaweiTe40 Firmware Versionv600r006c00
   HuaweiTe40 Version-
HuaweiTe50 Firmware Versionv500r002c00
   HuaweiTe50 Version-
HuaweiTe50 Firmware Versionv600r006c00
   HuaweiTe50 Version-
HuaweiTe60 Firmware Versionv100r001c01
   HuaweiTe60 Version-
HuaweiTe60 Firmware Versionv100r001c10
   HuaweiTe60 Version-
HuaweiTe60 Firmware Versionv500r002c00
   HuaweiTe60 Version-
HuaweiTe60 Firmware Versionv600r006c00
   HuaweiTe60 Version-
HuaweiUsg9500 Firmware Versionv500r001c00
   HuaweiUsg9500 Version-
HuaweiUsg9500 Firmware Versionv500r001c20
   HuaweiUsg9500 Version-
HuaweiUsg9500 Firmware Versionv500r001c30
   HuaweiUsg9500 Version-
HuaweiUsg9520 Firmware Versionv300r001c01
   HuaweiUsg9520 Version-
HuaweiUsg9520 Firmware Versionv300r001c20
   HuaweiUsg9520 Version-
HuaweiUsg9560 Firmware Versionv300r001c01
   HuaweiUsg9560 Version-
HuaweiUsg9560 Firmware Versionv300r001c20
   HuaweiUsg9560 Version-
HuaweiUsg9580 Firmware Versionv300r001c01
   HuaweiUsg9580 Version-
HuaweiUsg9580 Firmware Versionv300r001c20
   HuaweiUsg9580 Version-
HuaweiVp9660 Firmware Versionv200r001c02
   HuaweiVp9660 Version-
HuaweiVp9660 Firmware Versionv200r001c30
   HuaweiVp9660 Version-
HuaweiVp9660 Firmware Versionv500r002c00
   HuaweiVp9660 Version-
HuaweiVp9660 Firmware Versionv500r002c10
   HuaweiVp9660 Version-
HuaweiViewpoint 8660 Firmware Versionv100r008c03
   HuaweiViewpoint 8660 Version-
HuaweiViewpoint 9030 Firmware Versionv100r011c02
   HuaweiViewpoint 9030 Version-
HuaweiViewpoint 9030 Firmware Versionv100r011c03
   HuaweiViewpoint 9030 Version-
HuaweiEspace U1981 Firmware Versionv100r001c20
   HuaweiEspace U1981 Version-
HuaweiEspace U1981 Firmware Versionv200r003c00
   HuaweiEspace U1981 Version-
HuaweiEspace U1981 Firmware Versionv200r003c20
   HuaweiEspace U1981 Version-
HuaweiEspace U1981 Firmware Versionv200r003c30
   HuaweiEspace U1981 Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.19% 0.379
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 3.7 2.2 1.4
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L
nvd@nist.gov 4.3 8.6 2.9
AV:N/AC:M/Au:N/C:N/I:N/A:P
CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer

The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.