CVE Vulnerabilities

CVE-2021-22320

Published: Mar 22, 2021 | Modified: Mar 26, 2021
CVSS 3.x
7.5
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu

There is a denial of service vulnerability in Huawei products. A module cannot deal with specific messages correctly. Attackers can exploit this vulnerability by sending malicious messages to an affected module. This can lead to denial of service. Affected product include some versions of IPS Module, NGFW Module, NIP6600, NIP6800, Secospace USG6300, Secospace USG6500 and Secospace USG6600.

Affected Software

Name Vendor Start Version End Version
Ips_module_firmware Huawei v500r005c00spc100 (including) v500r005c00spc100 (including)
Ips_module_firmware Huawei v500r005c00spc200 (including) v500r005c00spc200 (including)
Ips_module_firmware Huawei v500r005c20spc300 (including) v500r005c20spc300 (including)

References