Vulnerability Details CVE-2014-4190
Multiple heap-based buffer overflows in Huawei Campus Series Switches S3700HI, S5700, S6700, S3300HI, S5300, S6300, S9300, S7700, and LSW S9700 with software V200R001 before V200R001SPH013; S5700, S6700, S5300, and S6300 with software V200R002 before V200R002SPH005; S7700, S9300, S9300E, S5300, S5700, S6300, S6700, S2350, S2750, and LSW S9700 with software V200R003 before V200R003SPH005; and S7700, S9300, S9300E, and LSW S9700 with software V200R005 before V200R005C00SPC300 allow remote attackers to cause a denial of service (device restart) via a crafted length field in a packet.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 48.0%
CVSS Severity
CVSS v2 Score 7.8
Products affected by CVE-2014-4190
-
cpe:2.3:a:huawei:campus_series_switch_software:v200r001
-
cpe:2.3:a:huawei:campus_series_switch_software:v200r002
-
cpe:2.3:a:huawei:campus_series_switch_software:v200r003
-
cpe:2.3:a:huawei:campus_series_switch_software:v200r005
-
cpe:2.3:h:huawei:campus_lsw_s9700:-
-
cpe:2.3:h:huawei:campus_s2350:-
-
cpe:2.3:h:huawei:campus_s2750:-
-
cpe:2.3:h:huawei:campus_s3300hi:-
-
cpe:2.3:h:huawei:campus_s3700hi:-
-
cpe:2.3:h:huawei:campus_s5300:-
-
cpe:2.3:h:huawei:campus_s5700:-
-
cpe:2.3:h:huawei:campus_s6300:-
-
cpe:2.3:h:huawei:campus_s6700:-
-
cpe:2.3:h:huawei:campus_s7700:-
-
cpe:2.3:h:huawei:campus_s9300:-
-
cpe:2.3:h:huawei:campus_s9300e:-