USG9500 with versions of V500R001C30SPC100, V500R001C30SPC200, V500R001C30SPC600, V500R001C60SPC500, V500R005C00SPC100, V500R005C00SPC200 have an information leakage vulnerability. Due to improper processing of the initialization vector used in a specific encryption algorithm, an attacker who gains access to this cryptographic primitive may exploit this vulnerability to cause the value of the confidentiality associated with its use to be diminished.
References
Link | Resource |
---|---|
https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20200115-01-firewall-en | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
History
No history.
Information
Published : 2020-01-21 19:15
Updated : 2020-08-24 17:37
NVD link : CVE-2019-19411
Mitre link : CVE-2019-19411
CVE.ORG link : CVE-2019-19411
JSON object : View
Products Affected
huawei
- usg9500_firmware
- usg9500
CWE
CWE-665
Improper Initialization