CVE-2020-35198
12.05.2021, 11:15
An issue was discovered in Wind River VxWorks 7. The memory allocator has a possible integer overflow in calculating a memory block's size to be allocated by calloc(). As a result, the actual memory allocated is smaller than the buffer size specified by the arguments, leading to memory corruption.Enginsight
Vendor | Product | Version |
---|---|---|
windriver | vxworks | 6.9 ≤ 𝑥 < 6.9.4.12 |
windriver | vxworks | 7.0 ≤ 𝑥 < 21.03 |
windriver | vxworks | 6.9.4.12 |
windriver | vxworks | 6.9.4.12:rolling_cumulative_patch_layer1 |
windriver | vxworks | 6.9.4.12:rolling_cumulative_patch_layer2 |
oracle | communications_eagle | 46.8.0 ≤ 𝑥 ≤ 46.8.2 |
oracle | communications_eagle | 46.9.1 ≤ 𝑥 ≤ 46.9.3 |
oracle | communications_eagle | 46.7.0 |
𝑥
= Vulnerable software versions
References