CVE-2017-15315

MEDIUM

Huawei Nip6300 Firmware - Resource Leak

Title source: rule
STIX 2.1

Description

Patch module of Huawei NIP6300 V500R001C20SPC100, V500R001C20SPC200, NIP6600 V500R001C20SPC100, V500R001C20SPC200, Secospace USG6300 V500R001C20SPC100, V500R001C20SPC200, Secospace USG6500 V500R001C20SPC100, V500R001C20SPC200 has a memory leak vulnerability. An authenticated attacker could execute special commands many times, the memory leaking happened, which would cause the device to reset finally.

Scores

CVSS v3 6.5
EPSS 0.0016
EPSS Percentile 36.0%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Details

CWE
CWE-772
Status published
Products (8)
huawei/nip6300_firmware v500r001c20spc100
huawei/nip6300_firmware v500r001c20spc200
huawei/nip6600_firmware v500r001c20spc100
huawei/nip6600_firmware v500r001c20spc200
huawei/secospace_usg6300_firmware v500r001c20spc100
huawei/secospace_usg6300_firmware v500r001c20spc200
huawei/secospace_usg6500_firmware v500r001c20spc100
huawei/secospace_usg6500_firmware v500r001c20spc200
Published Mar 09, 2018
Tracked Since Feb 18, 2026