CVE-2020-1865 Information
Jun 07, 2022
cve
Description
There is an out-of-bounds read vulnerability in Huawei CloudEngine products. The software reads data past the end of the intended buffer when parsing certain PIM message an adjacent attacker could send crafted PIM messages to the device successful exploit could cause out of bounds read when the system does the certain operation.
CVSS Vector
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Reference
https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20201230-02-cloudengine-en
Attack Complexity
LOW
Privileges Required
NONE
User Interaction Required
NONE
Scope
NONE
Confidentiality Impact
UNCHANGED
Integrity Impact
HIGH
Availability Impact
NONE
Base Score
NONE
Base Severity
6.5
Share on: