Vulnerability Description
Huawei S5700 and S6700 with software of V200R005C00 have a DoS vulnerability due to insufficient validation of the Network Quality Analysis (NQA) packets. A remote attacker could exploit this vulnerability by sending malformed NQA packets to the target device. Successful exploitation could make the device restart.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Huawei | S5700 Firmware | v200r005c00 |
| Huawei | S5700 | - |
| Huawei | S6700 Firmware | v200r005c00 |
| Huawei | S6700 | - |
Related Weaknesses (CWE)
References
- http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20171206-01-nqa-enVendor Advisory
- http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20171206-01-nqa-enVendor Advisory
FAQ
What is CVE-2017-15324?
CVE-2017-15324 is a vulnerability with a CVSS score of 7.5 (HIGH). Huawei S5700 and S6700 with software of V200R005C00 have a DoS vulnerability due to insufficient validation of the Network Quality Analysis (NQA) packets. A remote attacker could exploit this vulnerab...
How severe is CVE-2017-15324?
CVE-2017-15324 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2017-15324?
Check the references section above for vendor advisories and patch information. Affected products include: Huawei S5700 Firmware, Huawei S5700, Huawei S6700 Firmware, Huawei S6700.