CVE-2017-17166
Last modified
CVE-2017-17166 is a vulnerability of currently unknown severity. Huawei DP300 V500R002C00, Secospace USG6300 V500R001C00, V500R001C20, V500R001C30, V500R001C50, Secospace USG6500 V500R001C00, V500R001C20, V500R001C30, V500R001C50, Secospace USG6600 V500R001C00, V500R001C20, V500R001C30, V500R001C50, TP3206 V100R002C00, VP9660 V500R002C00, V500R002C10 have a resource exhaustion vulnerability. The software does not process certain field of H.323 message properly, a remote unauthenticated attacker could send crafted H.323 message to the device, successful exploit could cause certain service unavailable since the stack memory is exhausted.. EPSS estimates a 1.29% chance of exploitation in the next 30 days.
Description
Huawei DP300 V500R002C00, Secospace USG6300 V500R001C00, V500R001C20, V500R001C30, V500R001C50, Secospace USG6500 V500R001C00, V500R001C20, V500R001C30, V500R001C50, Secospace USG6600 V500R001C00, V500R001C20, V500R001C30, V500R001C50, TP3206 V100R002C00, VP9660 V500R002C00, V500R002C10 have a resource exhaustion vulnerability. The software does not process certain field of H.323 message properly, a remote unauthenticated attacker could send crafted H.323 message to the device, successful exploit could cause certain service unavailable since the stack memory is exhausted.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Huawei | Dp300 Firmware | v500r002c00 |
| Huawei | Secospace Usg6300 Firmware | v500r001c00 |
| Huawei | Secospace Usg6300 Firmware | v500r001c20 |
| Huawei | Secospace Usg6300 Firmware | v500r001c30 |
| Huawei | Secospace Usg6300 Firmware | v500r001c50 |
| Huawei | Secospace Usg6500 Firmware | v500r001c00 |
| Huawei | Secospace Usg6500 Firmware | v500r001c20 |
| Huawei | Secospace Usg6500 Firmware | v500r001c30 |
| Huawei | Secospace Usg6500 Firmware | v500r001c50 |
| Huawei | Secospace Usg6600 Firmware | v500r001c00 |
| Huawei | Secospace Usg6600 Firmware | v500r001c20 |
| Huawei | Secospace Usg6600 Firmware | v500r001c30 |
| Huawei | Secospace Usg6600 Firmware | v500r001c50 |
| Huawei | Tp3206 Firmware | v100r002c00 |
| Huawei | Vp9660 Firmware | v500r002c00 |
| Huawei | Vp9660 Firmware | v500r002c10 |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2017-17166?
How severe is CVE-2017-17166?
How do I fix CVE-2017-17166?
Are you affected by CVE-2017-17166?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
