CVE-2016-6670
published 2016-09-07CVE-2016-6670: Huawei S7700, S9300, S9700, and S12700 devices with software before V200R008C00SPC500 use random numbers with insufficient entropy to generate self-signed…
medium5.3CVSS 3.0
AVNACLPRNUINSUCLINAN
Huawei S7700, S9300, S9700, and S12700 devices with software before V200R008C00SPC500 use random numbers with insufficient entropy to generate self-signed certificates, which makes it easier for remote attackers to discover private keys by leveraging knowledge of a certificate.
Affected
7 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| huawei | s7700_firmware | — | — |
| huawei | s7700_firmware | — | — |
| huawei | s9300_firmware | — | — |
| huawei | s9300_firmware | — | — |
| huawei | s9700_firmware | — | — |
| huawei | s9700_firmware | — | — |
| huawei_firmware | s12700 | — | — |