8.8
CVE-2019-12257
- EPSS 15.36%
- Veröffentlicht 09.08.2019 18:15:11
- Zuletzt bearbeitet 21.11.2024 04:22:30
- Quelle cve@mitre.org
- Teams Watchlist Login
- Unerledigt Login
Wind River VxWorks 6.6 through 6.9 has a Buffer Overflow in the DHCP client component. There is an IPNET security vulnerability: Heap overflow in DHCP Offer/ACK parsing inside ipdhcpc.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Siemens ≫ Siprotec 5 Firmware Version < 7.59
Netapp ≫ E-series Santricity Os Controller Version >= 8.00 <= 8.40.50.00
Siemens ≫ Siprotec 5 Firmware Version < 7.91
Siemens ≫ Ruggedcom Win7000 Firmware Version < bs5.2.461.17
Siemens ≫ Ruggedcom Win7018 Firmware Version < bs5.2.461.17
Siemens ≫ Ruggedcom Win7025 Firmware Version < bs5.2.461.17
Siemens ≫ Ruggedcom Win7200 Firmware Version < bs5.2.461.17
Belden ≫ Hirschmann Hios Version <= 07.0.07
Belden ≫ Hirschmann Ees20 Version-
Belden ≫ Hirschmann Ees25 Version-
Belden ≫ Hirschmann Eesx20 Version-
Belden ≫ Hirschmann Eesx30 Version-
Belden ≫ Hirschmann Grs1020 Version-
Belden ≫ Hirschmann Grs1030 Version-
Belden ≫ Hirschmann Grs1042 Version-
Belden ≫ Hirschmann Grs1120 Version-
Belden ≫ Hirschmann Grs1130 Version-
Belden ≫ Hirschmann Grs1142 Version-
Belden ≫ Hirschmann Msp30 Version-
Belden ≫ Hirschmann Msp32 Version-
Belden ≫ Hirschmann Rail Switch Power Lite Version-
Belden ≫ Hirschmann Rail Switch Power Smart Version-
Belden ≫ Hirschmann Red25 Version-
Belden ≫ Hirschmann Rsp20 Version-
Belden ≫ Hirschmann Rsp25 Version-
Belden ≫ Hirschmann Rsp30 Version-
Belden ≫ Hirschmann Rsp35 Version-
Belden ≫ Hirschmann Rspe30 Version-
Belden ≫ Hirschmann Rspe32 Version-
Belden ≫ Hirschmann Rspe35 Version-
Belden ≫ Hirschmann Rspe37 Version-
Belden ≫ Hirschmann Ees25 Version-
Belden ≫ Hirschmann Eesx20 Version-
Belden ≫ Hirschmann Eesx30 Version-
Belden ≫ Hirschmann Grs1020 Version-
Belden ≫ Hirschmann Grs1030 Version-
Belden ≫ Hirschmann Grs1042 Version-
Belden ≫ Hirschmann Grs1120 Version-
Belden ≫ Hirschmann Grs1130 Version-
Belden ≫ Hirschmann Grs1142 Version-
Belden ≫ Hirschmann Msp30 Version-
Belden ≫ Hirschmann Msp32 Version-
Belden ≫ Hirschmann Rail Switch Power Lite Version-
Belden ≫ Hirschmann Rail Switch Power Smart Version-
Belden ≫ Hirschmann Red25 Version-
Belden ≫ Hirschmann Rsp20 Version-
Belden ≫ Hirschmann Rsp25 Version-
Belden ≫ Hirschmann Rsp30 Version-
Belden ≫ Hirschmann Rsp35 Version-
Belden ≫ Hirschmann Rspe30 Version-
Belden ≫ Hirschmann Rspe32 Version-
Belden ≫ Hirschmann Rspe35 Version-
Belden ≫ Hirschmann Rspe37 Version-
Belden ≫ Hirschmann Hios Version <= 07.5.01
Belden ≫ Hirschmann Hios Version <= 07.2.04
Belden ≫ Hirschmann Hios Version <= 05.3.06
Belden ≫ Hirschmann Eagle One Version-
Belden ≫ Hirschmann Eagle20 Version-
Belden ≫ Hirschmann Eagle30 Version-
Belden ≫ Hirschmann Eagle20 Version-
Belden ≫ Hirschmann Eagle30 Version-
Belden ≫ Garrettcom Magnum Dx940e Firmware Version <= 1.0.1_y7
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Typ | Quelle | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 15.36% | 0.944 |
Quelle | Base Score | Exploit Score | Impact Score | Vector String |
---|---|---|---|---|
nvd@nist.gov | 8.8 | 2.8 | 5.9 |
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
|
nvd@nist.gov | 5.8 | 6.5 | 6.4 |
AV:A/AC:L/Au:N/C:P/I:P/A:P
|
CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
The product copies an input buffer to an output buffer without verifying that the size of the input buffer is less than the size of the output buffer, leading to a buffer overflow.