HIGH · 7.5

CVE-2017-17311

Some Huawei Firewall products USG2205BSR V300R001C10SPC600; USG2220BSR V300R001C00; USG5120BSR V300R001C00; USG5150BSR V300R001C00 have a DoS vulnerability in the IPSEC IKEv1 implementations of Huawei...

Vulnerability Description

Some Huawei Firewall products USG2205BSR V300R001C10SPC600; USG2220BSR V300R001C00; USG5120BSR V300R001C00; USG5150BSR V300R001C00 have a DoS vulnerability in the IPSEC IKEv1 implementations of Huawei Firewall products. Due to improper handling of the malformed messages, an attacker may sent crafted packets to the affected device to exploit these vulnerabilities. Successful exploit the vulnerability could lead to device deny of service.

CVSS Score

7.5

HIGH

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
NONE
Integrity
NONE
Availability
HIGH

Affected Products

VendorProductVersions
HuaweiUsg2205Bsr Firmwarev300r001c10spc600
HuaweiUsg2205Bsr-
HuaweiUsg2220Bsr Firmwarev300r001c00
HuaweiUsg2220Bsr-
HuaweiUsg5120Bsr Firmwarev300r001c00
HuaweiUsg5120Bsr-
HuaweiUsg5150Bsr Firmwarev300r001c00
HuaweiUsg5150Bsr-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2017-17311?

CVE-2017-17311 is a vulnerability with a CVSS score of 7.5 (HIGH). Some Huawei Firewall products USG2205BSR V300R001C10SPC600; USG2220BSR V300R001C00; USG5120BSR V300R001C00; USG5150BSR V300R001C00 have a DoS vulnerability in the IPSEC IKEv1 implementations of Huawei...

How severe is CVE-2017-17311?

CVE-2017-17311 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2017-17311?

Check the references section above for vendor advisories and patch information. Affected products include: Huawei Usg2205Bsr Firmware, Huawei Usg2205Bsr, Huawei Usg2220Bsr Firmware, Huawei Usg2220Bsr, Huawei Usg5120Bsr Firmware.