Huawei Tecal RHXXXX DNS Packet 数据处理漏洞
CVE编号
CVE-2014-9693利用情况
暂无补丁情况
N/A披露时间
2017-04-03漏洞描述
华为Tecal RH1288 V2等都是中国华为(Huawei)公司的服务器。 多款华为服务器中存在缓冲区溢出漏洞,该漏洞源于程序在处理DNS服务器的报文时,未能充分的检测复制数据的长度。攻击者可利用该漏洞执行任意代码或造成系统重启。解决建议
目前厂商已经发布了升级补丁以修复此安全问题,补丁获取链接:http://www.huawei.com/cn/psirt/security-advisories/hw-408098
参考链接 |
|
---|---|
http://www.huawei.com/en/psirt/security-advisories/hw-408100 |
受影响软件情况
# | 类型 | 厂商 | 产品 | 版本 | 影响面 | ||||
1 | |||||||||
---|---|---|---|---|---|---|---|---|---|
运行在以下环境 | |||||||||
系统 | huawei | tecal_bh620_v2_firmware | * | Up to (including) v100r002c00spc107 | |||||
运行在以下环境 | |||||||||
系统 | huawei | tecal_bh621_v2_firmware | * | Up to (including) v100r002c00spc106 | |||||
运行在以下环境 | |||||||||
系统 | huawei | tecal_bh622_v2_firmware | * | Up to (including) v100r002c00spc110 | |||||
运行在以下环境 | |||||||||
系统 | huawei | tecal_bh640_v2_firmware | * | Up to (including) v100r002c00spc108 | |||||
运行在以下环境 | |||||||||
系统 | huawei | tecal_ch121_firmware | * | Up to (including) v100r001c00spc180 | |||||
运行在以下环境 | |||||||||
系统 | huawei | tecal_ch140_firmware | * | Up to (including) v100r001c00spc110 | |||||
运行在以下环境 | |||||||||
系统 | huawei | tecal_ch220_firmware | * | Up to (including) v100r001c00spc180 | |||||
运行在以下环境 | |||||||||
系统 | huawei | tecal_ch221_firmware | * | Up to (including) v100r001c00spc180 | |||||
运行在以下环境 | |||||||||
系统 | huawei | tecal_ch222_firmware | * | Up to (including) v100r002c00spc180 | |||||
运行在以下环境 | |||||||||
系统 | huawei | tecal_ch240_firmware | * | Up to (including) v100r001c00spc180 | |||||
运行在以下环境 | |||||||||
系统 | huawei | tecal_ch242_firmware | * | Up to (including) v100r001c00spc180 | |||||
运行在以下环境 | |||||||||
系统 | huawei | tecal_ch242_v3_firmware | * | Up to (including) v100r001c00spc110 | |||||
运行在以下环境 | |||||||||
系统 | huawei | tecal_dh310_v2_firmware | * | Up to (including) v100r001c00spc110 | |||||
运行在以下环境 | |||||||||
系统 | huawei | tecal_dh320_v2_firmware | * | Up to (including) v100r001c00spc106 | |||||
运行在以下环境 | |||||||||
系统 | huawei | tecal_dh620_v2_firmware | * | Up to (including) v100r001c00spc106 | |||||
运行在以下环境 | |||||||||
系统 | huawei | tecal_dh621_v2_firmware | * | Up to (including) v100r001c00spc107 | |||||
运行在以下环境 | |||||||||
系统 | huawei | tecal_dh628_v2_firmware | * | Up to (including) v100r001c00spc107 | |||||
运行在以下环境 | |||||||||
系统 | huawei | tecal_rh1288_v2_firmware | * | Up to (including) v100r002c00spc107 | |||||
运行在以下环境 | |||||||||
系统 | huawei | tecal_rh2265_v2_firmware | v100r002c00 | - | |||||
运行在以下环境 | |||||||||
系统 | huawei | tecal_rh2268_v2_firmware | v100r002c00 | - | |||||
运行在以下环境 | |||||||||
系统 | huawei | tecal_rh2285h_v2_firmware | * | Up to (including) v100r002c00spc111 | |||||
运行在以下环境 | |||||||||
系统 | huawei | tecal_rh2285_v2_firmware | * | Up to (including) v100r002c00spc115 | |||||
运行在以下环境 | |||||||||
系统 | huawei | tecal_rh2288h_v2_firmware | * | Up to (including) v100r002c00spc115 | |||||
运行在以下环境 | |||||||||
系统 | huawei | tecal_rh2288_v2_firmware | * | Up to (including) v100r002c00spc117 | |||||
运行在以下环境 | |||||||||
系统 | huawei | tecal_rh2485_v2_firmware | * | Up to (including) v100r002c00spc502 | |||||
运行在以下环境 | |||||||||
系统 | huawei | tecal_rh5885h_v3_firmware | * | Up to (including) v100r003c00spc102 | |||||
运行在以下环境 | |||||||||
系统 | huawei | tecal_rh5885_v2_firmware | * | Up to (including) v100r001c02spc109 | |||||
运行在以下环境 | |||||||||
系统 | huawei | tecal_rh5885_v3_firmware | * | Up to (including) v100r003c01spc102 | |||||
运行在以下环境 | |||||||||
系统 | huawei | tecal_xh310_v2_firmware | * | Up to (including) v100r001c00spc110 | |||||
运行在以下环境 | |||||||||
系统 | huawei | tecal_xh311_v2_firmware | * | Up to (including) v100r001c00spc110 | |||||
运行在以下环境 | |||||||||
系统 | huawei | tecal_xh320_v2_firmware | * | Up to (including) v100r001c00spc110 | |||||
运行在以下环境 | |||||||||
系统 | huawei | tecal_xh621_v2_firmware | * | Up to (including) v100r001c00spc106 | |||||
运行在以下环境 | |||||||||
硬件 | huawei | tecal_bh620_v2 | - | - | |||||
运行在以下环境 | |||||||||
硬件 | huawei | tecal_bh621_v2 | - | - | |||||
运行在以下环境 | |||||||||
硬件 | huawei | tecal_bh622_v2 | - | - | |||||
运行在以下环境 | |||||||||
硬件 | huawei | tecal_bh640_v2 | - | - | |||||
运行在以下环境 | |||||||||
硬件 | huawei | tecal_ch121 | - | - | |||||
运行在以下环境 | |||||||||
硬件 | huawei | tecal_ch140 | - | - | |||||
运行在以下环境 | |||||||||
硬件 | huawei | tecal_ch220 | - | - | |||||
运行在以下环境 | |||||||||
硬件 | huawei | tecal_ch221 | - | - | |||||
运行在以下环境 | |||||||||
硬件 | huawei | tecal_ch222 | - | - | |||||
运行在以下环境 | |||||||||
硬件 | huawei | tecal_ch240 | - | - | |||||
运行在以下环境 | |||||||||
硬件 | huawei | tecal_ch242 | - | - | |||||
运行在以下环境 | |||||||||
硬件 | huawei | tecal_ch242_v3 | - | - | |||||
运行在以下环境 | |||||||||
硬件 | huawei | tecal_dh310_v2 | - | - | |||||
运行在以下环境 | |||||||||
硬件 | huawei | tecal_dh320_v2 | - | - | |||||
运行在以下环境 | |||||||||
硬件 | huawei | tecal_dh620_v2 | - | - | |||||
运行在以下环境 | |||||||||
硬件 | huawei | tecal_dh621_v2 | - | - | |||||
运行在以下环境 | |||||||||
硬件 | huawei | tecal_dh628_v2 | - | - | |||||
运行在以下环境 | |||||||||
硬件 | huawei | tecal_rh1288_v2 | - | - | |||||
运行在以下环境 | |||||||||
硬件 | huawei | tecal_rh2265_v2 | - | - | |||||
运行在以下环境 | |||||||||
硬件 | huawei | tecal_rh2268_v2 | - | - | |||||
运行在以下环境 | |||||||||
硬件 | huawei | tecal_rh2285h_v2 | - | - | |||||
运行在以下环境 | |||||||||
硬件 | huawei | tecal_rh2285_v2 | - | - | |||||
运行在以下环境 | |||||||||
硬件 | huawei | tecal_rh2288h_v2 | - | - | |||||
运行在以下环境 | |||||||||
硬件 | huawei | tecal_rh2288_v2 | - | - | |||||
运行在以下环境 | |||||||||
硬件 | huawei | tecal_rh2485_v2 | - | - | |||||
运行在以下环境 | |||||||||
硬件 | huawei | tecal_rh5885h_v3 | - | - | |||||
运行在以下环境 | |||||||||
硬件 | huawei | tecal_rh5885_v2 | - | - | |||||
运行在以下环境 | |||||||||
硬件 | huawei | tecal_rh5885_v3 | - | - | |||||
运行在以下环境 | |||||||||
硬件 | huawei | tecal_xh310_v2 | - | - | |||||
运行在以下环境 | |||||||||
硬件 | huawei | tecal_xh311_v2 | - | - | |||||
运行在以下环境 | |||||||||
硬件 | huawei | tecal_xh320_v2 | - | - | |||||
运行在以下环境 | |||||||||
硬件 | huawei | tecal_xh621_v2 | - | - | |||||
- 攻击路径 网络
- 攻击复杂度 低
- 权限要求 无
- 影响范围 未更改
- 用户交互 无
- 可用性 高
- 保密性 高
- 完整性 高
CWE-ID | 漏洞类型 |
Exp相关链接

版权声明
本站原创文章转载请注明文章出处及链接,谢谢合作!
评论