There is a pointer double free vulnerability in some versions of CloudEngine 5800, CloudEngine 6800, CloudEngine 7800 and CloudEngine 12800. When a function is called, the same memory pointer is copied to two functional modules. Attackers can exploit this vulnerability by performing a malicious operation to cause the pointer double free. This may lead to module crash, compromising normal service.
The product calls free() twice on the same memory address, potentially leading to modification of unexpected memory locations.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Cloudengine_12800_firmware | Huawei | v200r002c50spc800 (including) | v200r002c50spc800 (including) |
Cloudengine_12800_firmware | Huawei | v200r003c00spc810 (including) | v200r003c00spc810 (including) |
Cloudengine_12800_firmware | Huawei | v200r005c00spc800 (including) | v200r005c00spc800 (including) |
Cloudengine_12800_firmware | Huawei | v200r005c10spc800 (including) | v200r005c10spc800 (including) |