Vulnerability Description
E6878-370 products with versions of 10.0.3.1(H557SP27C233) and 10.0.3.1(H563SP1C00) have a stack buffer overflow vulnerability. The program copies an input buffer to an output buffer without verification. An attacker in the adjacent network could send a crafted message, successful exploit could lead to stack buffer overflow which may cause malicious code execution.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Huawei | E6878-370 Firmware | 10.0.3.1\(h557sp27c233\) |
| Huawei | E6878-370 | - |
Related Weaknesses (CWE)
References
- https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20200527-01-stack-Vendor Advisory
- https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20200527-01-stack-Vendor Advisory
FAQ
What is CVE-2020-1832?
CVE-2020-1832 is a vulnerability with a CVSS score of 8.8 (HIGH). E6878-370 products with versions of 10.0.3.1(H557SP27C233) and 10.0.3.1(H563SP1C00) have a stack buffer overflow vulnerability. The program copies an input buffer to an output buffer without verificat...
How severe is CVE-2020-1832?
CVE-2020-1832 has been rated HIGH with a CVSS base score of 8.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2020-1832?
Check the references section above for vendor advisories and patch information. Affected products include: Huawei E6878-370 Firmware, Huawei E6878-370.