CVE-2019-5293

CWE-401Memory LeakCWE-7723 documents3 sources
Severity
6.5MEDIUM
EPSS
0.4%
top 41.47%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedNov 13
Latest updateMay 24

Description

Some Huawei products have a memory leak vulnerability when handling some messages. A remote attacker with operation privilege could exploit the vulnerability by sending specific messages continuously. Successful exploit may cause some service to be abnormal.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:HExploitability: 2.8 | Impact: 3.6

Affected Packages16 packages

NVDhuawei/ar150_firmwarev200r005c20, v200r006c10+1
NVDhuawei/ar160_firmwarev200r005c20, v200r006c10+1
NVDhuawei/ar200_firmwarev200r005c20, v200r006c10+1
NVDhuawei/ar1200_firmwarev200r005c20, v200r006c10+1
NVDhuawei/ar2200_firmwarev200r005c20, v200r006c10+1

🔴Vulnerability Details

2
GHSA
GHSA-xpg2-54xp-8xmf: Some Huawei products have a memory leak vulnerability when handling some messages2022-05-24
CVEList
CVE-2019-5293: Some Huawei products have a memory leak vulnerability when handling some messages2019-11-13
CVE-2019-5293 (MEDIUM CVSS 6.5) | Some Huawei products have a memory | cvebase.io