HIGH · 7.8

CVE-2015-8083

An unspecified module in Huawei eSpace U1910, U1911, U1930, U1960, U1980, and U1981 unified gateways with software before V200R003C00SPC300 does not properly initialize memory when processing timeout ...

Vulnerability Description

An unspecified module in Huawei eSpace U1910, U1911, U1930, U1960, U1980, and U1981 unified gateways with software before V200R003C00SPC300 does not properly initialize memory when processing timeout messages, which allows remote attackers to cause a denial of service (out-of-bounds memory access and device restart) via unknown vectors.

CVSS Score

7.8

HIGH

AV:N/AC:L/Au:N/C:N/I:N/A:C
Confidentiality
NONE
Integrity
NONE
Availability
COMPLETE

Affected Products

VendorProductVersions
HuaweiEspace Firmware<= v100r001c20
HuaweiEspace Unified Gateway U1910-
HuaweiEspace Unified Gateway U1911-
HuaweiEspace Unified Gateway U1930-
HuaweiEspace Unified Gateway U1960-
HuaweiEspace Unified Gateway U1980-
HuaweiEspace Unified Gateway U1981-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2015-8083?

CVE-2015-8083 is a vulnerability with a CVSS score of 7.8 (HIGH). An unspecified module in Huawei eSpace U1910, U1911, U1930, U1960, U1980, and U1981 unified gateways with software before V200R003C00SPC300 does not properly initialize memory when processing timeout ...

How severe is CVE-2015-8083?

CVE-2015-8083 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2015-8083?

Check the references section above for vendor advisories and patch information. Affected products include: Huawei Espace Firmware, Huawei Espace Unified Gateway U1910, Huawei Espace Unified Gateway U1911, Huawei Espace Unified Gateway U1930, Huawei Espace Unified Gateway U1960.