Vulnerability Description
Huawei DP300 V500R002C00; RP200 V500R002C00; V600R006C00; TE30 V100R001C10; V600R006C00; TE50 V600R006C00; TE60 V100R001C10; V500R002C00; V600R006C00; VP9660 V500R002C10 have an DoS vulnerability due to insufficient validation of the parameter when a putty comment key is loaded. An authenticated remote attacker can place a malformed putty key file in system when a system manager load the key an infinite loop happens which lead to reboot the system.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Huawei | Dp300 Firmware | v500r002c00 |
| Huawei | Dp300 | - |
| Huawei | Rp200 Firmware | v500r002c00 |
| Huawei | Rp200 | - |
| Huawei | Te30 Firmware | v100r001c10 |
| Huawei | Te30 | - |
| Huawei | Te50 Firmware | v600r006c00 |
| Huawei | Te50 | - |
| Huawei | Te60 Firmware | v100r001c10 |
| Huawei | Te60 | - |
| Huawei | Vp9660 Firmware | v500r002c10 |
| Huawei | Vp9660 | - |
Related Weaknesses (CWE)
References
- http://www.huawei.com/en/psirt/security-advisories/2017/huawei-sa-20171206-01-vpVendor Advisory
- http://www.huawei.com/en/psirt/security-advisories/2017/huawei-sa-20171206-01-vpVendor Advisory
FAQ
What is CVE-2017-17131?
CVE-2017-17131 is a vulnerability with a CVSS score of 5.7 (MEDIUM). Huawei DP300 V500R002C00; RP200 V500R002C00; V600R006C00; TE30 V100R001C10; V600R006C00; TE50 V600R006C00; TE60 V100R001C10; V500R002C00; V600R006C00; VP9660 V500R002C10 have an DoS vulnerability due ...
How severe is CVE-2017-17131?
CVE-2017-17131 has been rated MEDIUM with a CVSS base score of 5.7/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2017-17131?
Check the references section above for vendor advisories and patch information. Affected products include: Huawei Dp300 Firmware, Huawei Dp300, Huawei Rp200 Firmware, Huawei Rp200, Huawei Te30 Firmware.