Vulnerabilities > CVE-2014-3224 - Resource Management Errors vulnerability in Huawei products
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
NONE Integrity impact
NONE Availability impact
HIGH Summary
Huawei Quidway S9700 V200R003C00SPC500, Quidway S9300 V200R003C00SPC500, Quidway S7700 V200R003C00SPC500, Quidway S6700 V200R003C00SPC300, Quidway S6300 V200R003C00SPC300, Quidway S5700 V200R003C00SPC300, Quidway S5300 V200R003C00SPC300 enable attackers to launch DoS attacks by crafting and sending malformed packets to these vulnerable products.
Vulnerable Configurations
Common Weakness Enumeration (CWE)
Nessus
NASL family | Huawei Local Security Checks |
NASL id | HUAWEI-SA-20140423-01-QUIDWAY.NASL |
description | The remote host is a Huawei Quidway switch running a firmware version that is affected by a denial of service vulnerability. The issue is due to a failure to properly validate input. A remote, unauthenticated attacker could exploit this vulnerability by sending malformed packets to cause excessive memory consumption or even a device reboot. |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 76796 |
published | 2014-07-25 |
reporter | This script is Copyright (C) 2014 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/76796 |
title | Huawei Quidway Switches DoS (HWPSIRT-2014-0301) |