ZeroHour

CVE-2019-12257

CVSS 3.1
8.8 high
EPSS
84%p100
Published
()
Modified
Description

Wind River VxWorks 6.6 through 6.9 has a Buffer Overflow in the DHCP client component. There is an IPNET security vulnerability: Heap overflow in DHCP Offer/ACK parsing inside ipdhcpc.

Vendors
windriversonicwallsiemensnetappbelden
Products
vxworks, sonicos, siprotec 5 firmware, e-series santricity os controller, ruggedcom win7000 firmware, ruggedcom win7018 firmware, ruggedcom win7025 firmware, ruggedcom win7200 firmware, hirschmann hios, garrettcom magnum dx940e firmware
Weakness
CWE-120
Vector
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news