CVE-2021-29999
- EPSS 0.39%
- Published 13.04.2021 17:15:12
- Last modified 21.11.2024 06:02:08
An issue was discovered in Wind River VxWorks through 6.8. There is a possible stack overflow in dhcp server.
CVE-2016-20009
- EPSS 0.42%
- Published 11.03.2021 22:15:12
- Last modified 21.11.2024 02:47:32
A DNS client stack-based buffer overflow in ipdnsc_decode_name() affects Wind River VxWorks 6.5 through 7. NOTE: This vulnerability only affects products that are no longer supported by the maintainer
CVE-2020-28895
- EPSS 0.61%
- Published 03.02.2021 16:15:13
- Last modified 21.11.2024 05:23:14
In Wind River VxWorks, memory allocator has a possible overflow in calculating the memory block's size to be allocated by calloc(). As a result, the actual memory allocated is smaller than the buffer size specified by the arguments, leading to memory...
CVE-2020-11440
- EPSS 0.32%
- Published 23.07.2020 14:15:12
- Last modified 21.11.2024 04:57:55
httpRpmFs in WebCLI in Wind River VxWorks 5.5 through 7 SR0640 has no check for an escape from the web root.
CVE-2020-10664
- EPSS 0.39%
- Published 27.04.2020 13:15:12
- Last modified 21.11.2024 04:55:47
The IGMP component in VxWorks 6.8.3 IPNET CVE patches created in 2019 has a NULL Pointer Dereference.
CVE-2019-12262
- EPSS 0.31%
- Published 14.08.2019 20:15:11
- Last modified 21.11.2024 04:22:30
Wind River VxWorks 6.6, 6.7, 6.8, 6.9 and 7 has Incorrect Access Control in the RARP client component. IPNET security vulnerability: Handling of unsolicited Reverse ARP replies (Logical Flaw).
CVE-2019-12261
- EPSS 13.4%
- Published 09.08.2019 21:15:11
- Last modified 21.11.2024 04:22:30
Wind River VxWorks 6.7 though 6.9 and vx7 has a Buffer Overflow in the TCP component (issue 3 of 4). This is an IPNET security vulnerability: TCP Urgent Pointer state confusion during connect() to a remote host.
CVE-2019-12260
- EPSS 21.05%
- Published 09.08.2019 21:15:11
- Last modified 21.11.2024 04:22:30
Wind River VxWorks 6.9 and vx7 has a Buffer Overflow in the TCP component (issue 2 of 4). This is an IPNET security vulnerability: TCP Urgent Pointer state confusion caused by a malformed TCP AO option.
CVE-2019-12255
- EPSS 82.38%
- Published 09.08.2019 20:15:11
- Last modified 21.11.2024 04:22:29
Wind River VxWorks has a Buffer Overflow in the TCP component (issue 1 of 4). This is a IPNET security vulnerability: TCP Urgent Pointer = 0 that leads to an integer underflow.
CVE-2019-12258
- EPSS 14.88%
- Published 09.08.2019 20:15:11
- Last modified 21.11.2024 04:22:30
Wind River VxWorks 6.6 through vx7 has Session Fixation in the TCP component. This is a IPNET security vulnerability: DoS of TCP connection via malformed TCP options.