CVE-2017-15338
Description
The SIP module in Huawei DP300 V500R002C00, IPS Module V100R001C10, V100R001C20, V100R001C30, V500R001C00, V500R001C20, V500R001C30, V500R001C50, NGFW Module V100R001C10, V100R001C20, V100R001C30, V500R001C00, V500R001C20, V500R002C00, V500R002C10, NIP6300 V500R001C00, V500R001C20, V500R001C30, V500R001C50, NIP6600 V500R001C00, V500R001C20, V500R001C30, V500R001C50, NIP6800 V500R001C50, RP200 V500R002C00, V600R006C00, SVN5600 V200R003C00, V200R003C10, SVN5800 V200R003C00, V200R003C10, SVN5800-C V200R003C00, V200R003C10, SeMG9811 V300R001C01, Secospace USG6300 V100R001C10, V100R001C20, V100R001C30, V500R001C00, V500R001C20, V500R001C30, V500R001C50, Secospace USG6500 V100R001C10, V100R001C20, V100R001C30, V500R001C00, V500R001C20, V500R001C30, V500R001C50, Secospace USG6600 V100R001C00, V100R001C20, V100R001C30, V500R001C00, V500R001C20, V500R001C30, V500R001C50, TE30 V100R001C02, V100R001C10, V500R002C00, V600R006C00, TE40 V500R002C00, V600R006C00, TE50 V500R002C00, V600R006C00, TE60 V100R001C01, V100R001C10, V500R002C00, V600R006C00, USG9500 V500R001C00, V500R001C20, V500R001C30, USG9520 V300R001C01, V300R001C20, USG9560 V300R001C01, V300R001C20, USG9580 V300R001C01, V300R001C20, VP9660 V200R001C02, V200R001C30, V500R002C00, V500R002C10, ViewPoint 8660 V100R008C03, ViewPoint 9030 V100R011C02, V100R011C03, eSpace U1981 V100R001C20, V200R003C00, V200R003C20, V200R003C30 has a buffer overflow vulnerability. An attacker would have to find a way to craft specific messages to the affected products. Due to the insufficient validation for SIP messages, successful exploit may cause services abnormal.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
A buffer overflow in the SIP module of multiple Huawei products allows a remote attacker to cause service disruption by sending crafted messages.
Vulnerability
A buffer overflow vulnerability exists in the Session Initiation Protocol (SIP) module of multiple Huawei products. The affected products include DP300, IPS Module, NGFW Module, NIP6300, NIP6600, NIP6800, RP200, SVN5600, SVN5800, SVN5800-C, SeMG9811, Secospace USG6300/6500/6600, TE30/40/50/60, USG9500/9520/9560/9580, VP9660, ViewPoint 8660/9030, and eSpace U1981, running a wide range of firmware versions as listed in the advisory [1]. The bug is triggered due to insufficient validation of specific values in SIP messages, leading to a buffer overflow when crafted input is processed [1].
Exploitation
To exploit the vulnerability, an attacker must be able to send specially crafted SIP messages to the affected product [1]. The attacker does not require authentication or local access; the attack is conducted over the network. The craft must target the SIP backup feature (as identified by Huawei vulnerability IDs HWPSIRT-2017-04055, HWPSIRT-2017-04056, and HWPSIRT-2017-04057) [1]. There is no user interaction required beyond the system receiving and processing the malicious SIP traffic.
Impact
Successful exploitation of this buffer overflow can lead to abnormal service behavior [1]. The primary impact is on availability, as the overflow may cause the SIP service to crash or behave unpredictably. The advisory does not specify if remote code execution is possible; the stated outcome is service disruption or abnormality [1]. Depending on the product role (e.g., firewall, videoconferencing, unified gateway), this could result in loss of communication or security capabilities.
Mitigation
Huawei has released software updates to fix this vulnerability [1]. The fixed versions are listed in the security advisory (huawei-sa-20171201-01-sip) and vary by product. Users are advised to upgrade to the resolved product versions indicated in the advisory [1]. No workaround is provided; the only mitigation is applying the official patches. This vulnerability is not listed on the CISA Known Exploited Vulnerabilities (KEV) catalog.
AI Insight generated on May 26, 2026. Synthesized from this CVE's description and the cited reference URLs; citations are validated against the source bundle.
Affected products
4- Range: V100R001C10, V100R001C20, V100R001C30, V500R001C00, V500R001C20, V500R001C30, V500R001C50
- Range: V100R001C10, V100R001C20, V100R001C30, V500R001C00, V500R001C20, V500R002C00, V500R002C10
- Huawei Technologies Co., Ltd./DP300,IPS Module,NGFW Module,NIP6300,NIP6600,NIP6800,RP200,SVN5600,SVN5800,SVN5800-C,SeMG9811,Secospace USG6300,Secospace USG6500,Secospace USG6600,TE30,TE40,TE50,TE60,USG9500,USG9520,USG9560,USG9580,VP9660,ViewPoint 8660,ViewPoint 9030,eSpace U1981v5Range: DP300 V500R002C00, IPS Module V100R001C10, V100R001C20, V100R001C30, V500R001C00, V500R001C20, V500R001C30, V500R001C50, NGFW Module V100R001C10, V100R001C20, V100R001C30, V500R001C00, V500R001C20, V500R002C00, V500R002C10, NIP6300 V500R001C00, V500R001C20, V500R001C30, V500R001C50, NIP6600 V500R001C00, V500R001C20, V500R001C30, V500R001C50, NIP6800 V500R001C50, RP200 V500R002C00, V600R006C00, SVN5600 V200R003C00, V200R003C10, SVN5800 V200R003C00, V200R003C10, SVN5800-C V200R003C00, V200R003C10, SeMG9811 V300R001C01, Secospace USG6300 V100R001C10, V100R001C20, V100R001C30, V500R001C00, V500R001C20, V500R001C30, V500R001C50, Secospace USG6500 V100R001C10, V100R001C20, V100R001C30, V500R001C00, V500R001C20, V500R001C30, V500R001C50, Secospace USG6600 V100R001C00, V100R001C20, V100R001C30, V500R001C00, V500R001C20, V500R001C30, V500R001C50, TE30 V100R001C02, V100R001C10, V500R002C00, V600R006C00, TE40 V500R002C00, V600R006C00, TE50 V500R002C00, V600R006C00, TE60 V100R001C01, V100R001C10, V500R002 ...[truncated*]
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1- www.huawei.com/en/psirt/security-advisories/huawei-sa-20171201-01-sip-enmitrex_refsource_CONFIRM
News mentions
0No linked articles in our index yet.