Wind River VxWorks 6.6, 6.7, 6.8, 6.9 and vx7 has an array index error in the IGMPv3 client component. There is an IPNET security vulnerability: DoS via NULL dereference in IGMP parsing.
File data ot_500058.nasl
Vendor | Product | Version | CPE |
---|---|---|---|
windriver | vxworks | 6.6 | cpe:2.3:o:windriver:vxworks:6.6:*:*:*:*:*:*:* |
windriver | vxworks | 6.7 | cpe:2.3:o:windriver:vxworks:6.7:*:*:*:*:*:*:* |
windriver | vxworks | 6.8 | cpe:2.3:o:windriver:vxworks:6.8:*:*:*:*:*:*:* |
windriver | vxworks | 6.9 | cpe:2.3:o:windriver:vxworks:6.9:*:*:*:*:*:*:* |
windriver | vxworks | 7 | cpe:2.3:o:windriver:vxworks:7:*:*:*:*:*:*:* |
netap | e-series_santricity_os_controller | * | cpe:2.3:o:netap:e-series_santricity_os_controller:*:*:*:*:*:*:*:* |
sonicwall | sonicos | * | cpe:2.3:o:sonicwall:sonicos:*:*:*:*:*:*:*:* |
sonicwall | sonicos | * | cpe:2.3:o:sonicwall:sonicos:*:*:*:*:*:*:*:* |
sonicwall | sonicos | * | cpe:2.3:o:sonicwall:sonicos:*:*:*:*:*:*:*:* |
sonicwall | sonicos | * | cpe:2.3:o:sonicwall:sonicos:*:*:*:*:*:*:*:* |
cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-12259
cert-portal.siemens.com/productcert/pdf/ssa-189842.pdf
cert-portal.siemens.com/productcert/pdf/ssa-632562.pdf
psirt.global.sonicwall.com/vuln-detail/SNWLID-2019-0009
security.netapp.com/advisory/ntap-20190802-0001/
support.f5.com/csp/article/K41190253
support2.windriver.com/index.php?page=cve&on=view&id=CVE-2019-12259
support2.windriver.com/index.php?page=security-notices
www.windriver.com/security/announcements/tcp-ip-network-stack-ipnet-urgent11/