CVE-2019-5278

Severity CVSS v4.0:
Pending analysis
Type:
CWE-125 Out-of-bounds Read
Publication date:
13/12/2019
Last modified:
19/12/2019

Description

There is an out-of-bounds read vulnerability in the Advanced Packages feature of the Gauss100 OLTP database in CampusInsight before V100R019C00SPC200. Attackers who gain the specific permission can use this vulnerability by sending elaborate SQL statements to the database. Successful exploit of this vulnerability may cause the database to crash.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:huawei:campusinsight:v100r019c00:*:*:*:*:*:*:*