CVE-2014-4190

Multiple heap-based buffer overflows in Huawei Campus Series Switches S3700HI, S5700, S6700, S3300HI, S5300, S6300, S9300, S7700, and LSW S9700 with software V200R001 before V200R001SPH013; S5700, S6700, S5300, and S6300 with software V200R002 before V200R002SPH005; S7700, S9300, S9300E, S5300, S5700, S6300, S6700, S2350, S2750, and LSW S9700 with software V200R003 before V200R003SPH005; and S7700, S9300, S9300E, and LSW S9700 with software V200R005 before V200R005C00SPC300 allow remote attackers to cause a denial of service (device restart) via a crafted length field in a packet.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:huawei:campus_series_switch_software:v200r001:*:*:*:*:*:*:*
OR cpe:2.3:h:huawei:campus_lsw_s9700:-:*:*:*:*:*:*:*
cpe:2.3:h:huawei:campus_s3300hi:-:*:*:*:*:*:*:*
cpe:2.3:h:huawei:campus_s3700hi:-:*:*:*:*:*:*:*
cpe:2.3:h:huawei:campus_s5300:-:*:*:*:*:*:*:*
cpe:2.3:h:huawei:campus_s5700:-:*:*:*:*:*:*:*
cpe:2.3:h:huawei:campus_s6300:-:*:*:*:*:*:*:*
cpe:2.3:h:huawei:campus_s6700:-:*:*:*:*:*:*:*
cpe:2.3:h:huawei:campus_s7700:-:*:*:*:*:*:*:*
cpe:2.3:h:huawei:campus_s9300:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:a:huawei:campus_series_switch_software:v200r005:*:*:*:*:*:*:*
OR cpe:2.3:h:huawei:campus_lsw_s9700:-:*:*:*:*:*:*:*
cpe:2.3:h:huawei:campus_s7700:-:*:*:*:*:*:*:*
cpe:2.3:h:huawei:campus_s9300:-:*:*:*:*:*:*:*
cpe:2.3:h:huawei:campus_s9300e:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:a:huawei:campus_series_switch_software:v200r003:*:*:*:*:*:*:*
OR cpe:2.3:h:huawei:campus_lsw_s9700:-:*:*:*:*:*:*:*
cpe:2.3:h:huawei:campus_s2350:-:*:*:*:*:*:*:*
cpe:2.3:h:huawei:campus_s2750:-:*:*:*:*:*:*:*
cpe:2.3:h:huawei:campus_s5300:-:*:*:*:*:*:*:*
cpe:2.3:h:huawei:campus_s5700:-:*:*:*:*:*:*:*
cpe:2.3:h:huawei:campus_s6300:-:*:*:*:*:*:*:*
cpe:2.3:h:huawei:campus_s6700:-:*:*:*:*:*:*:*
cpe:2.3:h:huawei:campus_s7700:-:*:*:*:*:*:*:*
cpe:2.3:h:huawei:campus_s9300:-:*:*:*:*:*:*:*
cpe:2.3:h:huawei:campus_s9300e:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:a:huawei:campus_series_switch_software:v200r002:*:*:*:*:*:*:*
OR cpe:2.3:h:huawei:campus_s5300:-:*:*:*:*:*:*:*
cpe:2.3:h:huawei:campus_s5700:-:*:*:*:*:*:*:*
cpe:2.3:h:huawei:campus_s6300:-:*:*:*:*:*:*:*
cpe:2.3:h:huawei:campus_s6700:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2014-06-17 14:55

Updated : 2024-02-04 18:35


NVD link : CVE-2014-4190

Mitre link : CVE-2014-4190

CVE.ORG link : CVE-2014-4190


JSON object : View

Products Affected

huawei

  • campus_lsw_s9700
  • campus_s5700
  • campus_s9300
  • campus_s2350
  • campus_s5300
  • campus_s2750
  • campus_s6700
  • campus_s9300e
  • campus_s6300
  • campus_s3300hi
  • campus_s7700
  • campus_s3700hi
  • campus_series_switch_software
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer