Vulnerability Description
Multiple heap-based buffer overflows in Huawei Campus Series Switches S3700HI, S5700, S6700, S3300HI, S5300, S6300, S9300, S7700, and LSW S9700 with software V200R001 before V200R001SPH013; S5700, S6700, S5300, and S6300 with software V200R002 before V200R002SPH005; S7700, S9300, S9300E, S5300, S5700, S6300, S6700, S2350, S2750, and LSW S9700 with software V200R003 before V200R003SPH005; and S7700, S9300, S9300E, and LSW S9700 with software V200R005 before V200R005C00SPC300 allow remote attackers to cause a denial of service (device restart) via a crafted length field in a packet.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Huawei | Campus Series Switch Software | v200r001 |
| Huawei | Campus Lsw S9700 | - |
| Huawei | Campus S3300Hi | - |
| Huawei | Campus S3700Hi | - |
| Huawei | Campus S5300 | - |
| Huawei | Campus S5700 | - |
| Huawei | Campus S6300 | - |
| Huawei | Campus S6700 | - |
| Huawei | Campus S7700 | - |
| Huawei | Campus S9300 | - |
| Huawei | Campus S9300E | - |
| Huawei | Campus S2350 | - |
| Huawei | Campus S2750 | - |
Related Weaknesses (CWE)
References
- http://www.huawei.com/en/security/psirt/security-bulletins/security-advisories/hVendor Advisory
- http://www.securityfocus.com/bid/67907
- http://www.huawei.com/en/security/psirt/security-bulletins/security-advisories/hVendor Advisory
- http://www.securityfocus.com/bid/67907
FAQ
What is CVE-2014-4190?
CVE-2014-4190 is a vulnerability with a CVSS score of 7.8 (HIGH). Multiple heap-based buffer overflows in Huawei Campus Series Switches S3700HI, S5700, S6700, S3300HI, S5300, S6300, S9300, S7700, and LSW S9700 with software V200R001 before V200R001SPH013; S5700, S67...
How severe is CVE-2014-4190?
CVE-2014-4190 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2014-4190?
Check the references section above for vendor advisories and patch information. Affected products include: Huawei Campus Series Switch Software, Huawei Campus Lsw S9700, Huawei Campus S3300Hi, Huawei Campus S3700Hi, Huawei Campus S5300.