Show filters
38 Total Results
Displaying 11-20 of 38
Sort by:
Attacker Value
Unknown
CVE-2020-28895
Disclosure Date: February 03, 2021 (last updated February 22, 2025)
In Wind River VxWorks, memory allocator has a possible overflow in calculating the memory block's size to be allocated by calloc(). As a result, the actual memory allocated is smaller than the buffer size specified by the arguments, leading to memory corruption.
0
Attacker Value
Unknown
CVE-2020-11440
Disclosure Date: July 23, 2020 (last updated November 28, 2024)
httpRpmFs in WebCLI in Wind River VxWorks 5.5 through 7 SR0640 has no check for an escape from the web root.
0
Attacker Value
Unknown
CVE-2020-10664
Disclosure Date: April 27, 2020 (last updated February 21, 2025)
The IGMP component in VxWorks 6.8.3 IPNET CVE patches created in 2019 has a NULL Pointer Dereference.
0
Attacker Value
Unknown
CVE-2019-12262
Disclosure Date: August 14, 2019 (last updated November 27, 2024)
Wind River VxWorks 6.6, 6.7, 6.8, 6.9 and 7 has Incorrect Access Control in the RARP client component. IPNET security vulnerability: Handling of unsolicited Reverse ARP replies (Logical Flaw).
0
Attacker Value
Unknown
CVE-2019-12260
Disclosure Date: August 09, 2019 (last updated November 27, 2024)
Wind River VxWorks 6.9 and vx7 has a Buffer Overflow in the TCP component (issue 2 of 4). This is an IPNET security vulnerability: TCP Urgent Pointer state confusion caused by a malformed TCP AO option.
0
Attacker Value
Unknown
CVE-2019-12261
Disclosure Date: August 09, 2019 (last updated November 27, 2024)
Wind River VxWorks 6.7 though 6.9 and vx7 has a Buffer Overflow in the TCP component (issue 3 of 4). This is an IPNET security vulnerability: TCP Urgent Pointer state confusion during connect() to a remote host.
0
Attacker Value
Unknown
CVE-2019-12255
Disclosure Date: August 09, 2019 (last updated November 08, 2023)
Wind River VxWorks has a Buffer Overflow in the TCP component (issue 1 of 4). This is a IPNET security vulnerability: TCP Urgent Pointer = 0 that leads to an integer underflow.
0
Attacker Value
Unknown
CVE-2019-12258
Disclosure Date: August 09, 2019 (last updated November 27, 2024)
Wind River VxWorks 6.6 through vx7 has Session Fixation in the TCP component. This is a IPNET security vulnerability: DoS of TCP connection via malformed TCP options.
0
Attacker Value
Unknown
CVE-2019-12265
Disclosure Date: August 09, 2019 (last updated November 27, 2024)
Wind River VxWorks 6.5, 6.6, 6.7, 6.8, 6.9.3 and 6.9.4 has a Memory Leak in the IGMPv3 client component. There is an IPNET security vulnerability: IGMP Information leak via IGMPv3 specific membership report.
0
Attacker Value
Unknown
CVE-2019-12259
Disclosure Date: August 09, 2019 (last updated November 27, 2024)
Wind River VxWorks 6.6, 6.7, 6.8, 6.9 and vx7 has an array index error in the IGMPv3 client component. There is an IPNET security vulnerability: DoS via NULL dereference in IGMP parsing.
0