Vulnerability Description
Some Huawei Firewall products USG2205BSR V300R001C10SPC600; USG2220BSR V300R001C00; USG5120BSR V300R001C00; USG5150BSR V300R001C00 have a DoS vulnerability in the IPSEC IKEv1 implementations of Huawei Firewall products. Due to improper handling of the malformed messages, an attacker may sent crafted packets to the affected device to exploit these vulnerabilities. Successful exploit the vulnerability could lead to device deny of service.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Huawei | Usg2205Bsr Firmware | v300r001c10spc600 |
| Huawei | Usg2205Bsr | - |
| Huawei | Usg2220Bsr Firmware | v300r001c00 |
| Huawei | Usg2220Bsr | - |
| Huawei | Usg5120Bsr Firmware | v300r001c00 |
| Huawei | Usg5120Bsr | - |
| Huawei | Usg5150Bsr Firmware | v300r001c00 |
| Huawei | Usg5150Bsr | - |
Related Weaknesses (CWE)
References
- https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20180813-01-BleichVendor Advisory
- https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20180813-01-BleichVendor Advisory
FAQ
What is CVE-2017-17311?
CVE-2017-17311 is a vulnerability with a CVSS score of 7.5 (HIGH). Some Huawei Firewall products USG2205BSR V300R001C10SPC600; USG2220BSR V300R001C00; USG5120BSR V300R001C00; USG5150BSR V300R001C00 have a DoS vulnerability in the IPSEC IKEv1 implementations of Huawei...
How severe is CVE-2017-17311?
CVE-2017-17311 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2017-17311?
Check the references section above for vendor advisories and patch information. Affected products include: Huawei Usg2205Bsr Firmware, Huawei Usg2205Bsr, Huawei Usg2220Bsr Firmware, Huawei Usg2220Bsr, Huawei Usg5120Bsr Firmware.