CVE-2025-26500
- EPSS 0.03%
- Veröffentlicht 21.03.2025 22:20:36
- Zuletzt bearbeitet 21.03.2025 23:15:21
: Uncontrolled Resource Consumption vulnerability in Wind River Systems VxWorks 7 on VxWorks allows Excessive Allocation. Specifically crafted USB packets may lead to the system becoming unavailable This issue affects VxWorks 7: from 22.06 throug...
CVE-2024-28759
- EPSS 0.14%
- Veröffentlicht 14.05.2024 15:14:40
- Zuletzt bearbeitet 28.03.2025 20:15:21
A crafted network packet may cause a buffer overrun in Wind River VxWorks 7 through 23.09.
CVE-2023-51787
- EPSS 0.07%
- Veröffentlicht 15.02.2024 06:15:46
- Zuletzt bearbeitet 18.03.2025 15:15:46
An issue was discovered in Wind River VxWorks 7 22.09 and 23.03. If a VxWorks task or POSIX thread that uses OpenSSL exits, limited per-task memory is not freed, resulting in a memory leak.
CVE-2023-38346
- EPSS 1.23%
- Veröffentlicht 22.09.2023 19:15:09
- Zuletzt bearbeitet 21.11.2024 08:13:22
An issue was discovered in Wind River VxWorks 6.9 and 7. The function ``tarExtract`` implements TAR file extraction and thereby also processes files within an archive that have relative or absolute file paths. A developer using the "tarExtract" funct...
CVE-2022-38767
- EPSS 0.14%
- Veröffentlicht 25.11.2022 15:15:10
- Zuletzt bearbeitet 25.04.2025 19:15:45
An issue was discovered in Wind River VxWorks 6.9 and 7, that allows a specifically crafted packet sent by a Radius server, may cause Denial of Service during the IP Radius access procedure.
CVE-2022-23937
- EPSS 0.18%
- Veröffentlicht 29.03.2022 02:15:07
- Zuletzt bearbeitet 21.11.2024 06:49:29
In Wind River VxWorks 6.9 and 7, a specific crafted packet may lead to an out-of-bounds read during an IKE initial exchange scenario.
CVE-2021-43268
- EPSS 0.14%
- Veröffentlicht 24.11.2021 17:15:08
- Zuletzt bearbeitet 21.11.2024 06:28:57
An issue was discovered in VxWorks 6.9 through 7. In the IKE component, a specifically crafted packet may lead to reading beyond the end of a buffer, or a double free.
CVE-2020-35198
- EPSS 2.92%
- Veröffentlicht 12.05.2021 11:15:07
- Zuletzt bearbeitet 21.11.2024 05:26:56
An issue was discovered in Wind River VxWorks 7. The memory allocator has a possible integer overflow in calculating a memory block's size to be allocated by calloc(). As a result, the actual memory allocated is smaller than the buffer size specified...
CVE-2021-29998
- EPSS 0.72%
- Veröffentlicht 13.04.2021 17:15:12
- Zuletzt bearbeitet 21.11.2024 06:02:08
An issue was discovered in Wind River VxWorks before 6.5. There is a possible heap overflow in dhcp client.
CVE-2021-29997
- EPSS 0.13%
- Veröffentlicht 13.04.2021 17:15:12
- Zuletzt bearbeitet 21.11.2024 06:02:08
An issue was discovered in Wind River VxWorks 7 before 21.03. A specially crafted packet may lead to buffer over-read on IKE.