VYPR
Unrated severityNVD Advisory· Published Feb 15, 2018· Updated Aug 5, 2024

CVE-2017-15339

CVE-2017-15339

Description

The SIP module in Huawei DP300 V500R002C00, IPS Module V100R001C10, V100R001C20, V100R001C30, V500R001C00, V500R001C20, V500R001C30, V500R001C50, NGFW Module V100R001C10, V100R001C20, V100R001C30, V500R001C00, V500R001C20, V500R002C00, V500R002C10, NIP6300 V500R001C00, V500R001C20, V500R001C30, V500R001C50, NIP6600 V500R001C00, V500R001C20, V500R001C30, V500R001C50, NIP6800 V500R001C50, RP200 V500R002C00, V600R006C00, SVN5600 V200R003C00, V200R003C10, SVN5800 V200R003C00, V200R003C10, SVN5800-C V200R003C00, V200R003C10, SeMG9811 V300R001C01, Secospace USG6300 V100R001C10, V100R001C20, V100R001C30, V500R001C00, V500R001C20, V500R001C30, V500R001C50, Secospace USG6500 V100R001C10, V100R001C20, V100R001C30, V500R001C00, V500R001C20, V500R001C30, V500R001C50, Secospace USG6600 V100R001C00, V100R001C20, V100R001C30, V500R001C00, V500R001C20, V500R001C30, V500R001C50, TE30 V100R001C02, V100R001C10, V500R002C00, V600R006C00, TE40 V500R002C00, V600R006C00, TE50 V500R002C00, V600R006C00, TE60 V100R001C01, V100R001C10, V500R002C00, V600R006C00, USG9500 V500R001C00, V500R001C20, V500R001C30, USG9520 V300R001C01, V300R001C20, USG9560 V300R001C01, V300R001C20, USG9580 V300R001C01, V300R001C20, VP9660 V200R001C02, V200R001C30, V500R002C00, V500R002C10, ViewPoint 8660 V100R008C03, ViewPoint 9030 V100R011C02, V100R011C03, eSpace U1981 V100R001C20, V200R003C00, V200R003C20, V200R003C30 has a buffer overflow vulnerability. An attacker would have to find a way to craft specific messages to the affected products. Due to the insufficient validation for SIP messages, successful exploit may cause services abnormal.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

A buffer overflow in the SIP module of multiple Huawei products allows a remote attacker to cause service disruption via crafted SIP messages.

Vulnerability

The SIP module in multiple Huawei products (including DP300 V500R002C00, IPS Module V100R001C10-V500R001C50, NGFW Module V100R001C10-V500R002C10, and many others) contains a buffer overflow vulnerability [1]. Due to insufficient validation of SIP messages, an attacker can craft specific messages that trigger a buffer overflow in the SIP module's processing code [1]. The affected versions span a wide range of Huawei product lines, including firewalls, NIP series, video conferencing systems, and UC products [1].

Exploitation

An attacker must first find a way to send specially crafted SIP messages to an affected device [1]. This requires network access to the product's SIP service. The attacker does not need authentication; the crafted messages are sent directly to the listening SIP service. The exact sequence involves crafting a SIP message containing a field value that exceeds the expected buffer size, which causes a buffer overflow during processing [1].

Impact

Successful exploitation can cause the affected product's services to behave abnormally, leading to a denial of service (DoS) [1]. The impact is primarily on availability; the overflow disrupts normal SIP processing, potentially causing service interruption until the product is restarted or the malicious traffic stops [1]. No evidence in the references indicates remote code execution or data compromise; the vulnerability is limited to service abnormality [1].

Mitigation

Huawei has released software updates to fix this vulnerability [1]. The fixed versions are available via Huawei's security advisory (huawei-sa-20171201-01-sip) [1]. Users are advised to upgrade to the resolved product and version as specified in the advisory [1]. No workaround is documented, but network administrators can restrict access to the SIP service to trusted hosts as a temporary measure. The CVE is not listed in CISA's Known Exploited Vulnerabilities (KEV) catalog as of the last known release date (2018-04-25) [1].

AI Insight generated on May 26, 2026. Synthesized from this CVE's description and the cited reference URLs; citations are validated against the source bundle.

Affected products

4
  • Huawei/DP300llm-fuzzy
    Range: = V500R002C00
  • Range: V100R001C10, V100R001C20, V100R001C30, V500R001C00, V500R001C20, V500R001C30, V500R001C50
  • Range: V100R001C10, V100R001C20, V100R001C30, V500R001C00, V500R001C20, V500R002C00, V500R002C10
  • Huawei Technologies Co., Ltd./DP300,IPS Module,NGFW Module,NIP6300,NIP6600,NIP6800,RP200,SVN5600,SVN5800,SVN5800-C,SeMG9811,Secospace USG6300,Secospace USG6500,Secospace USG6600,TE30,TE40,TE50,TE60,USG9500,USG9520,USG9560,USG9580,VP9660,ViewPoint 8660,ViewPoint 9030,eSpace U1981v5
    Range: DP300 V500R002C00, IPS Module V100R001C10, V100R001C20, V100R001C30, V500R001C00, V500R001C20, V500R001C30, V500R001C50, NGFW Module V100R001C10, V100R001C20, V100R001C30, V500R001C00, V500R001C20, V500R002C00, V500R002C10, NIP6300 V500R001C00, V500R001C20, V500R001C30, V500R001C50, NIP6600 V500R001C00, V500R001C20, V500R001C30, V500R001C50, NIP6800 V500R001C50, RP200 V500R002C00, V600R006C00, SVN5600 V200R003C00, V200R003C10, SVN5800 V200R003C00, V200R003C10, SVN5800-C V200R003C00, V200R003C10, SeMG9811 V300R001C01, Secospace USG6300 V100R001C10, V100R001C20, V100R001C30, V500R001C00, V500R001C20, V500R001C30, V500R001C50, Secospace USG6500 V100R001C10, V100R001C20, V100R001C30, V500R001C00, V500R001C20, V500R001C30, V500R001C50, Secospace USG6600 V100R001C00, V100R001C20, V100R001C30, V500R001C00, V500R001C20, V500R001C30, V500R001C50, TE30 V100R001C02, V100R001C10, V500R002C00, V600R006C00, TE40 V500R002C00, V600R006C00, TE50 V500R002C00, V600R006C00, TE60 V100R001C01, V100R001C10, V500R002 ...[truncated*]

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.