Vulnerability Name:

CVE-2016-6518 (CCN-117359)

Assigned:2016-09-14
Published:2016-09-14
Updated:2016-09-28
Summary:Memory leak in Huawei S9300, S5300, S5700, S6700, S7700, S9700, and S12700 devices allows remote attackers to cause a denial of service (memory consumption and restart) via a large number of malformed packets.
CVSS v3 Severity:7.5 High (CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H)
6.5 Medium (Temporal CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H/E:U/RL:O/RC:C)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): High
7.5 High (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H)
6.5 Medium (CCN Temporal CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H/E:U/RL:O/RC:C)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): High
CVSS v2 Severity:5.0 Medium (CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Authentication (Au): None
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): Partial
7.8 High (CCN CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:N/A:C)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Athentication (Au): None
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): Complete
Vulnerability Type:CWE-399
Vulnerability Consequences:Denial of Service
References:Source: MITRE
Type: CNA
CVE-2016-6518

Source: CCN
Type: huawei-sa-20160914-01-sep
DoS Vulnerability in Huawei Switches

Source: CONFIRM
Type: Vendor Advisory
http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20160914-01-sep-en

Source: BID
Type: Third Party Advisory, VDB Entry
92968

Source: CCN
Type: BID-92968
Multiple Huawei Switches CVE-2016-6518 Remote Denial of Service Vulnerability

Source: XF
Type: UNKNOWN
huawei-cve20166518-dos(117359)

Vulnerable Configuration:Configuration 1:
  • cpe:/o:huawei:s5300_firmware:v200r001c00:*:*:*:*:*:*:*
  • OR cpe:/o:huawei:s5300_firmware:v200r002c00:*:*:*:*:*:*:*
  • OR cpe:/o:huawei:s5300_firmware:v200r003c00:*:*:*:*:*:*:*
  • OR cpe:/o:huawei:s5300_firmware:v200r005c00:*:*:*:*:*:*:*
  • OR cpe:/o:huawei:s5300_firmware:v200r005c01:*:*:*:*:*:*:*
  • OR cpe:/o:huawei:s5300_firmware:v200r005c02:*:*:*:*:*:*:*
  • OR cpe:/o:huawei:s5300_firmware:v200r006c00:*:*:*:*:*:*:*
  • OR cpe:/o:huawei:s5300_firmware:v200r007c00:*:*:*:*:*:*:*
  • OR cpe:/o:huawei:s5300_firmware:v200r008c00:*:*:*:*:*:*:*
  • AND
  • cpe:/h:huawei:s5300:-:*:*:*:*:*:*:*

  • Configuration 2:
  • cpe:/o:huawei:s12700_firmware:v200r005c00:*:*:*:*:*:*:*
  • OR cpe:/o:huawei:s12700_firmware:v200r006c00:*:*:*:*:*:*:*
  • OR cpe:/o:huawei:s12700_firmware:v200r008c00:*:*:*:*:*:*:*
  • AND
  • cpe:/h:huawei:s12700:-:*:*:*:*:*:*:*

  • Configuration 3:
  • cpe:/o:huawei:s6300_firmware:v200r001c00:*:*:*:*:*:*:*
  • OR cpe:/o:huawei:s6300_firmware:v200r002c00:*:*:*:*:*:*:*
  • OR cpe:/o:huawei:s6300_firmware:v200r003c00:*:*:*:*:*:*:*
  • OR cpe:/o:huawei:s6300_firmware:v200r005c00:*:*:*:*:*:*:*
  • OR cpe:/o:huawei:s6300_firmware:v200r005c01:*:*:*:*:*:*:*
  • OR cpe:/o:huawei:s6300_firmware:v200r005c02:*:*:*:*:*:*:*
  • OR cpe:/o:huawei:s6300_firmware:v200r008c00:*:*:*:*:*:*:*
  • AND
  • cpe:/h:huawei:s6300:-:*:*:*:*:*:*:*

  • Configuration 4:
  • cpe:/o:huawei:s7700_firmware:v200r001c00:*:*:*:*:*:*:*
  • OR cpe:/o:huawei:s7700_firmware:v200r002c00:*:*:*:*:*:*:*
  • OR cpe:/o:huawei:s7700_firmware:v200r003c00:*:*:*:*:*:*:*
  • OR cpe:/o:huawei:s7700_firmware:v200r005c00:*:*:*:*:*:*:*
  • OR cpe:/o:huawei:s7700_firmware:v200r006c00:*:*:*:*:*:*:*
  • OR cpe:/o:huawei:s7700_firmware:v200r008c00:*:*:*:*:*:*:*
  • AND
  • cpe:/h:huawei:s7700:-:*:*:*:*:*:*:*

  • Configuration 5:
  • cpe:/o:huawei:s5700_firmware:v200r001c00:*:*:*:*:*:*:*
  • OR cpe:/o:huawei:s5700_firmware:v200r001c01:*:*:*:*:*:*:*
  • OR cpe:/o:huawei:s5700_firmware:v200r002c00:*:*:*:*:*:*:*
  • OR cpe:/o:huawei:s5700_firmware:v200r003c00:*:*:*:*:*:*:*
  • OR cpe:/o:huawei:s5700_firmware:v200r003c02:*:*:*:*:*:*:*
  • OR cpe:/o:huawei:s5700_firmware:v200r005c00:*:*:*:*:*:*:*
  • OR cpe:/o:huawei:s5700_firmware:v200r006c00:*:*:*:*:*:*:*
  • OR cpe:/o:huawei:s5700_firmware:v200r008c00:*:*:*:*:*:*:*
  • AND
  • cpe:/h:huawei:s5700:-:*:*:*:*:*:*:*

  • Configuration 6:
  • cpe:/o:huawei:s6700_firmware:v200r001c00:*:*:*:*:*:*:*
  • OR cpe:/o:huawei:s6700_firmware:v200r001c01:*:*:*:*:*:*:*
  • OR cpe:/o:huawei:s6700_firmware:v200r002c00:*:*:*:*:*:*:*
  • OR cpe:/o:huawei:s6700_firmware:v200r003c00:*:*:*:*:*:*:*
  • OR cpe:/o:huawei:s6700_firmware:v200r008c00:*:*:*:*:*:*:*
  • AND
  • cpe:/h:huawei:s6700:-:*:*:*:*:*:*:*

  • Configuration 7:
  • cpe:/o:huawei:s9700_firmware:v200r001c00:*:*:*:*:*:*:*
  • OR cpe:/o:huawei:s9700_firmware:v200r001c01:*:*:*:*:*:*:*
  • OR cpe:/o:huawei:s9700_firmware:v200r002c00:*:*:*:*:*:*:*
  • OR cpe:/o:huawei:s9700_firmware:v200r003c00:*:*:*:*:*:*:*
  • OR cpe:/o:huawei:s9700_firmware:v200r005c00:*:*:*:*:*:*:*
  • OR cpe:/o:huawei:s9700_firmware:v200r006c00:*:*:*:*:*:*:*
  • OR cpe:/o:huawei:s9700_firmware:v200r008c00:*:*:*:*:*:*:*
  • AND
  • cpe:/h:huawei:s9700:-:*:*:*:*:*:*:*

  • Configuration 8:
  • cpe:/o:huawei:s9300_firmware:v200r001c00:*:*:*:*:*:*:*
  • OR cpe:/o:huawei:s9300_firmware:v200r003c00:*:*:*:*:*:*:*
  • OR cpe:/o:huawei:s9300_firmware:v200r005c00:*:*:*:*:*:*:*
  • OR cpe:/o:huawei:s9300_firmware:v200r006c00:*:*:*:*:*:*:*
  • OR cpe:/o:huawei:s9300_firmware:v200r008c00:*:*:*:*:*:*:*
  • AND
  • cpe:/h:huawei:s9300:-:*:*:*:*:*:*:*

  • * Denotes that component is vulnerable
    BACK
    huawei s5300 firmware v200r001c00
    huawei s5300 firmware v200r002c00
    huawei s5300 firmware v200r003c00
    huawei s5300 firmware v200r005c00
    huawei s5300 firmware v200r005c01
    huawei s5300 firmware v200r005c02
    huawei s5300 firmware v200r006c00
    huawei s5300 firmware v200r007c00
    huawei s5300 firmware v200r008c00
    huawei s5300 -
    huawei s12700 firmware v200r005c00
    huawei s12700 firmware v200r006c00
    huawei s12700 firmware v200r008c00
    huawei s12700 -
    huawei s6300 firmware v200r001c00
    huawei s6300 firmware v200r002c00
    huawei s6300 firmware v200r003c00
    huawei s6300 firmware v200r005c00
    huawei s6300 firmware v200r005c01
    huawei s6300 firmware v200r005c02
    huawei s6300 firmware v200r008c00
    huawei s6300 -
    huawei s7700 firmware v200r001c00
    huawei s7700 firmware v200r002c00
    huawei s7700 firmware v200r003c00
    huawei s7700 firmware v200r005c00
    huawei s7700 firmware v200r006c00
    huawei s7700 firmware v200r008c00
    huawei s7700 -
    huawei s5700 firmware v200r001c00
    huawei s5700 firmware v200r001c01
    huawei s5700 firmware v200r002c00
    huawei s5700 firmware v200r003c00
    huawei s5700 firmware v200r003c02
    huawei s5700 firmware v200r005c00
    huawei s5700 firmware v200r006c00
    huawei s5700 firmware v200r008c00
    huawei s5700 -
    huawei s6700 firmware v200r001c00
    huawei s6700 firmware v200r001c01
    huawei s6700 firmware v200r002c00
    huawei s6700 firmware v200r003c00
    huawei s6700 firmware v200r008c00
    huawei s6700 -
    huawei s9700 firmware v200r001c00
    huawei s9700 firmware v200r001c01
    huawei s9700 firmware v200r002c00
    huawei s9700 firmware v200r003c00
    huawei s9700 firmware v200r005c00
    huawei s9700 firmware v200r006c00
    huawei s9700 firmware v200r008c00
    huawei s9700 -
    huawei s9300 firmware v200r001c00
    huawei s9300 firmware v200r003c00
    huawei s9300 firmware v200r005c00
    huawei s9300 firmware v200r006c00
    huawei s9300 firmware v200r008c00
    huawei s9300 -