Some Huawei products have a buffer error vulnerability. An unauthenticated, remote attacker could send specific MPLS Echo Request messages to the target products. Due to insufficient input validation of some parameters in the messages, successful exploit may cause the device to reset.

Project Subscriptions

Vendors Products
Ar120-s Subscribe
Ar120-s Firmware Subscribe
Ar1200-s Subscribe
Ar1200-s Firmware Subscribe
Ar1200 Firmware Subscribe
Ar150-s Subscribe
Ar150-s Firmware Subscribe
Ar150 Firmware Subscribe
Ar160 Firmware Subscribe
Ar200-s Subscribe
Ar200-s Firmware Subscribe
Ar200 Firmware Subscribe
Ar2200-s Subscribe
Ar2200-s Firmware Subscribe
Ar2200 Firmware Subscribe
Ar3200 Firmware Subscribe
Ar3600 Firmware Subscribe
Ips Module Subscribe
Ips Module Firmware Subscribe
Netengine16ex Subscribe
Netengine16ex Firmware Subscribe
Ngfw Module Subscribe
Ngfw Module Firmware Subscribe
Nip6300 Subscribe
Nip6300 Firmware Subscribe
Nip6600 Subscribe
Nip6600 Firmware Subscribe
S5700 Firmware Subscribe
S6700 Firmware Subscribe
Secospace Antiddos8000 Subscribe
Secospace Antiddos8000 Firmware Subscribe
Secospace Usg6300 Subscribe
Secospace Usg6300 Firmware Subscribe
Secospace Usg6500 Subscribe
Secospace Usg6500 Firmware Subscribe
Secospace Usg6600 Subscribe
Secospace Usg6600 Firmware Subscribe
Srg1300 Subscribe
Srg1300 Firmware Subscribe
Srg2300 Subscribe
Srg2300 Firmware Subscribe
Srg3300 Subscribe
Srg3300 Firmware Subscribe
Advisories
Source ID Title
EUVD EUVD EUVD-2019-14909 Some Huawei products have a buffer error vulnerability. An unauthenticated, remote attacker could send specific MPLS Echo Request messages to the target products. Due to insufficient input validation of some parameters in the messages, successful exploit may cause the device to reset.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: huawei

Published:

Updated: 2024-08-04T19:54:53.290Z

Reserved: 2019-01-04T00:00:00

Link: CVE-2019-5304

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2020-01-03T15:15:11.993

Modified: 2024-11-21T04:44:42.770

Link: CVE-2019-5304

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses