SCCP (Signalling Connection Control Part) module in Huawei DP300 V500R002C00, RP200 V500R002C00, V600R006C00, TE30 V100R001C10, V500R002C00, V600R006C00, TE40 V500R002C00, V600R006C00, TE50 V500R002C00, V600R006C00, TE60 V100R001C10, V500R002C00, V600R006C00 has a buffer overflow vulnerability. An attacker has to find a way to send malformed packets to the affected products repeatedly. Due to insufficient input validation, successful exploit may cause some service abnormal.
| Software | From | Fixed in |
|---|---|---|
| huawei / dp300_firmware | 500r002c00 | 500r002c00.x |
| huawei / rp200_firmware | 500r002c00 | 500r002c00.x |
| huawei / rp200_firmware | 600r006c00 | 600r006c00.x |
| huawei / te30_firmware | 100r001c10 | 100r001c10.x |
| huawei / te30_firmware | 500r002c00 | 500r002c00.x |
| huawei / te30_firmware | 600r006c00 | 600r006c00.x |
| huawei / te40_firmware | 500r002c00 | 500r002c00.x |
| huawei / te40_firmware | 600r006c00 | 600r006c00.x |
| huawei / te50_firmware | 500r002c00 | 500r002c00.x |
| huawei / te50_firmware | 600r006c00 | 600r006c00.x |
| huawei / te60_firmware | 100r001c10 | 100r001c10.x |
| huawei / te60_firmware | 500r002c00 | 500r002c00.x |
| huawei / te60_firmware | 600r006c00 | 600r006c00.x |