CVE-2019-5247

Severity CVSS v4.0:
Pending analysis
Type:
CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
Publication date:
29/11/2019
Last modified:
09/12/2019

Description

Huawei Atlas 300, Atlas 500 have a buffer overflow vulnerability. A local, authenticated attacker may craft specific parameter and send to the process to exploit this vulnerability. Successfully exploit may cause service crash.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:huawei:atlas_300_firmware:*:*:*:*:*:*:*:* 1.0.0 (including) 1.0.0.spc102 (excluding)
cpe:2.3:h:huawei:atlas_300:-:*:*:*:*:*:*:*
cpe:2.3:o:huawei:atlas_500_firmware:*:*:*:*:*:*:*:* 1.0.0 (including) 1.0.0.spc102 (excluding)
cpe:2.3:h:huawei:atlas_500:-:*:*:*:*:*:*:*