CVE-2017-17143 is an overflow vulnerability in the SIP module of various Huawei DP300, RP200, RSE6500, TE30, TE40, TE50, TE60, TP3106, TP3206, ViewPoint 9030, eSpace U1960, and eSpace U1981 products. The vulnerability arises from improper parsing of malformed SIP messages during variable validation. With a CVSS score of 5.3 (Medium), this vulnerability can be exploited remotely without authentication or user interaction, leading to a denial-of-service condition where a process reboots randomly. While the impact is limited to availability, the ease of exploitation makes it a concern. There is no evidence of active exploitation, publicly available exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage regarding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
v500r002c00CPE matchmatch criteria | cpe:2.3:o:huawei:dp300_firmware:v500r002c00:*:*:*:*:*:*:* | ||
v500r002c00spc100CPE matchmatch criteria | cpe:2.3:o:huawei:dp300_firmware:v500r002c00spc100:*:*:*:*:*:*:* | ||
v500r002c00spc200CPE matchmatch criteria | cpe:2.3:o:huawei:dp300_firmware:v500r002c00spc200:*:*:*:*:*:*:* | ||
v500r002c00spc300CPE matchmatch criteria | cpe:2.3:o:huawei:dp300_firmware:v500r002c00spc300:*:*:*:*:*:*:* | ||
v500r002c00spc400CPE matchmatch criteria | cpe:2.3:o:huawei:dp300_firmware:v500r002c00spc400:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.