CVE Vulnerabilities

CVE-2021-22320

Published: Mar 22, 2021 | Modified: Nov 21, 2024
CVSS 3.x
7.5
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

There is a denial of service vulnerability in Huawei products. A module cannot deal with specific messages correctly. Attackers can exploit this vulnerability by sending malicious messages to an affected module. This can lead to denial of service. Affected product include some versions of IPS Module, NGFW Module, NIP6600, NIP6800, Secospace USG6300, Secospace USG6500 and Secospace USG6600.

Affected Software

NameVendorStart VersionEnd Version
Ips_module_firmwareHuaweiv500r005c00spc100 (including)v500r005c00spc100 (including)
Ips_module_firmwareHuaweiv500r005c00spc200 (including)v500r005c00spc200 (including)
Ips_module_firmwareHuaweiv500r005c20spc300 (including)v500r005c20spc300 (including)

References