CVE-2021-39995
published 2021-11-29CVE-2021-39995: Some Huawei products use the OpenHpi software for hardware management. A function that parses data returned by OpenHpi contains an out-of-bounds read…
medium6.5CVSS 3.1
AVNACLPRLUINSUCNINAH
Some Huawei products use the OpenHpi software for hardware management. A function that parses data returned by OpenHpi contains an out-of-bounds read vulnerability that could lead to a denial of service. Affected product versions include: eCNS280_TD V100R005C10; eSE620X vESS V100R001C10SPC200, V100R001C20SPC200, V200R001C00SPC300.
Affected
4 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| huawei | ecns280_td_firmware | — | — |
| huawei | ese620x_vess_firmware | — | — |
| huawei | ese620x_vess_firmware | — | — |
| huawei | ese620x_vess_firmware | — | — |