CVE-2019-5304

Description

Some Huawei products have a buffer error vulnerability. An unauthenticated, remote attacker could send specific MPLS Echo Request messages to the target products. Due to insufficient input validation of some parameters in the messages, successful exploit may cause the device to reset.

Risk Information

Base Score
7.5
MODERATE
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
EPSS Score
Exploitation Probability
0.24

Associated Vulnerability

VulnerabilityOS Platform
Multiple Vulnerabilities affected in ar120-s_firmware v200r007c00NCM
Vulnerabilities CVE-2019-5259 ,CVE-2019-5291 ,CVE-2019-5304 are affected in ar120-s_firmware v200r008c50NCM
Vulnerabilities CVE-2019-5304 are affected in ar120-s_firmware v200r008c20NCM
Vulnerabilities CVE-2019-5304 are affected in ar120-s_firmware v200r006c10NCM
Buffer Copy without Checking Size of Input (Classic Buffer Overflow) Vulnerability (CVE-2019-5304)NCM

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234