SB2019111506 - Denial of service in Huawei ManageOne
Published: November 15, 2019
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 security vulnerability.
1) Buffer overflow (CVE-ID: CVE-2019-5289)
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to a boundary error in the Gauss100 OLTP database. A remote attacker can construct invalid packets to attack the active and standby communication channels, trigger memory corruption and crash the database on the standby node.
Remediation
Install update from vendor's website.