CVE-2016-4577

Description

Buffer overflow in the Smart DNS functionality in the Huawei NGFW Module and Secospace USG6300, USG6500, USG6600, and USG9500 firewalls with software before V500R001C20SPC100 allows remote attackers to cause a denial of service or execute arbitrary code via a crafted packet, related to illegitimate parameters.

Risk Information

Base Score
7.5
MODERATE
Vector
CVSS:3.0/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
0.125

Associated Vulnerability

VulnerabilityOS Platform
Vulnerabilities CVE-2016-4577 are affected in usg9500_firmware v500r001c00NCM
Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2016-4577)NCM

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234