Vulnerability Description
There is an out-of-bounds read vulnerability in eSE620X vESS V100R001C10SPC200, V100R001C20SPC200, V200R001C00SPC300. The vulnerability is due to a function that handles an internal message contains an out-of-bounds read vulnerability. An attacker could crafted messages between system process, successful exploit could cause Denial of Service (DoS).
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Huawei | Ese620X Vess Firmware | v100r001c10spc200 |
| Huawei | Ese620X Vess | - |
Related Weaknesses (CWE)
References
- https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20210526-03-dos-enVendor Advisory
- https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20210526-03-dos-enVendor Advisory
FAQ
What is CVE-2021-22366?
CVE-2021-22366 is a vulnerability with a CVSS score of 5.5 (MEDIUM). There is an out-of-bounds read vulnerability in eSE620X vESS V100R001C10SPC200, V100R001C20SPC200, V200R001C00SPC300. The vulnerability is due to a function that handles an internal message contains a...
How severe is CVE-2021-22366?
CVE-2021-22366 has been rated MEDIUM with a CVSS base score of 5.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2021-22366?
Check the references section above for vendor advisories and patch information. Affected products include: Huawei Ese620X Vess Firmware, Huawei Ese620X Vess.