CVE-2015-8084

Huawei USG5500, USG2100, USG2200, and USG5100 unified security gateways with software before V300R001C10SPC600, when "DHCP Snooping" is enabled and either "option82 insert" or "option82 rebuild" is enabled on an interface, allow remote attackers to cause a denial of service (reboot) via crafted DHCP packets.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:huawei:unified_security_gateway_firmware:*:*:*:*:*:*:*:*
OR cpe:2.3:h:huawei:usg2100:*:*:*:*:*:*:*:*
cpe:2.3:h:huawei:usg2200:*:*:*:*:*:*:*:*
cpe:2.3:h:huawei:usg5100:*:*:*:*:*:*:*:*
cpe:2.3:h:huawei:usg5500:*:*:*:*:*:*:*:*

History

21 Nov 2024, 02:37

Type Values Removed Values Added
References () http://www.securityfocus.com/bid/77300 - () http://www.securityfocus.com/bid/77300 -
References () http://www1.huawei.com/en/security/psirt/security-bulletins/security-advisories/hw-457916.htm - Vendor Advisory () http://www1.huawei.com/en/security/psirt/security-bulletins/security-advisories/hw-457916.htm - Vendor Advisory

Information

Published : 2015-12-07 20:59

Updated : 2024-11-21 02:37


NVD link : CVE-2015-8084

Mitre link : CVE-2015-8084

CVE.ORG link : CVE-2015-8084


JSON object : View

Products Affected

huawei

  • usg5100
  • usg2200
  • usg5500
  • unified_security_gateway_firmware
  • usg2100
CWE
CWE-20

Improper Input Validation