ZeroHour

CVE-2021-40008

CVSS 3.1
7.5 high
EPSS
<1%p49
Published
()
Modified
Description

There is a memory leak vulnerability in CloudEngine 12800 V200R019C00SPC800, CloudEngine 5800 V200R019C00SPC800, CloudEngine 6800 V200R019C00SPC800 and CloudEngine 7800 V200R019C00SPC800. The software does not sufficiently track and release allocated memory while parse a series of crafted binary messages, which could consume remaining memory. Successful exploit could cause memory exhaust.

Vendors
huawei
Products
cloudengine 7800 firmware, cloudengine 6800 firmware, cloudengine 5800 firmware, cloudengine 12800 firmware
Weakness
CWE-772
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.