CVE-2020-1819

CVSS 3.1 Score 5.3 of 10 (medium)

Attack Complexity low
Availability low
Confidentiality none
Integrity none
Scope unchanged
Privileges Required none

Details

Published Dec 27, 2024
Updated: Jan 10, 2025
CWE ID 125

Summary

CVE-2020-1819 refers to a series of out-of-bounds (OOB) read vulnerabilities identified in the Common Open Policy Service (COPS) protocol implementation of certain Huawei products. These vulnerabilities affect multiple decoding functions within the process of incoming data packets. A successful exploitation could result in service disruptions on the vulnerable device. Seven CVE IDs have been assigned to these vulnerabilities: CVE-2020-1818, CVE-2020-1819, CVE-2020-1820, CVE-2020-1821, CVE-2020-1822, CVE-2020-1823, and CVE-2020-1824. (Vulnerability IDs: HWPSIRT-2018-12275, HWPSIRT-2018-12276, HWPSIRT-2018-12277, HWPSIRT-2018-12278, HWPSIRT-2018-12279, HWPSIRT-2018-12280, and HWPSIRT-2018-12289)

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Huawei NGFW Module
  • Huawei Nip6300
  • Huawei Nip6600
  • Huawei Secospace Usg6300
  • Huawei Secospace Usg6600

Affected Vendors

  • Huawei Technologies