Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2019-12259


Wind River VxWorks 6.6, 6.7, 6.8, 6.9 and vx7 has an array index error in the IGMPv3 client component. There is an IPNET security vulnerability: DoS via NULL dereference in IGMP parsing.


Published

2019-08-09T19:15:11.140

Last Modified

2024-11-21T04:22:30.387

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 7.5 (HIGH)

CVSSv2 Vector

AV:N/AC:L/Au:N/C:N/I:N/A:P

  • Access Vector: NETWORK
  • Access Complexity: LOW
  • Authentication: NONE
  • Confidentiality Impact: NONE
  • Integrity Impact: NONE
  • Availability Impact: PARTIAL
Exploitability Score

10.0

Impact Score

2.9

Weaknesses
  • Type: Primary
    CWE-476

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System windriver vxworks < 6.9.4.12 Yes
Operating System windriver vxworks 7.0 Yes
Operating System sonicwall sonicos ≤ 5.9.0.7 Yes
Operating System sonicwall sonicos ≤ 5.9.1.12 Yes
Operating System sonicwall sonicos ≤ 6.2.3.1 Yes
Operating System sonicwall sonicos ≤ 6.2.4.3 Yes
Operating System sonicwall sonicos ≤ 6.2.5.3 Yes
Operating System sonicwall sonicos ≤ 6.2.6.1 Yes
Operating System sonicwall sonicos ≤ 6.2.7.4 Yes
Operating System sonicwall sonicos ≤ 6.2.9.2 Yes
Operating System sonicwall sonicos ≤ 6.5.0.3 Yes
Operating System sonicwall sonicos ≤ 6.5.1.4 Yes
Operating System sonicwall sonicos ≤ 6.5.2.3 Yes
Operating System sonicwall sonicos ≤ 6.5.3.3 Yes
Operating System sonicwall sonicos ≤ 6.5.4.3 Yes
Operating System sonicwall sonicos 6.2.7.0 Yes
Operating System sonicwall sonicos 6.2.7.1 Yes
Operating System sonicwall sonicos 6.2.7.7 Yes
Operating System siemens siprotec_5_firmware < 7.59 Yes
Operating System siemens siprotec_5 - No
Operating System siemens siprotec_5_firmware < 7.91 Yes
Operating System siemens siprotec_5 - No
Operating System siemens siprotec_5_firmware < 7.91 Yes
Operating System siemens siprotec_5 - No
Operating System siemens ruggedcom_win7000_firmware < bs5.2.461.17 Yes
Hardware siemens ruggedcom_win7000 - No
Operating System siemens ruggedcom_win7200_firmware < bs5.2.461.17 Yes
Hardware siemens ruggedcom_win7200 - No
Operating System siemens ruggedcom_win7025_firmware < bs5.2.461.17 Yes
Hardware siemens ruggedcom_win7025 - No
Operating System siemens ruggedcom_win7018_firmware < bs5.2.461.17 Yes
Hardware siemens ruggedcom_win7018 - No
Operating System siemens ruggedcom_win7200_firmware < bs5.2.461.17 Yes
Hardware siemens ruggedcom_win7200 - No
Operating System siemens 9410_power_meter_firmware < 2.2.1 Yes
Hardware siemens 9410_power_meter - No
Operating System siemens 9810_power_meter_firmware < 2.2.1 Yes
Hardware siemens 9810_power_meter - No
Operating System belden hirschmann_hios ≤ 07.0.07 Yes
Hardware belden hirschmann_ees20 - No
Hardware belden hirschmann_ees25 - No
Hardware belden hirschmann_eesx20 - No
Hardware belden hirschmann_eesx30 - No
Hardware belden hirschmann_grs1020 - No
Hardware belden hirschmann_grs1030 - No
Hardware belden hirschmann_grs1042 - No
Hardware belden hirschmann_grs1120 - No
Hardware belden hirschmann_grs1130 - No
Hardware belden hirschmann_grs1142 - No
Hardware belden hirschmann_msp30 - No
Hardware belden hirschmann_msp32 - No
Hardware belden hirschmann_rail_switch_power_lite - No
Hardware belden hirschmann_rail_switch_power_smart - No
Hardware belden hirschmann_red25 - No
Hardware belden hirschmann_rsp20 - No
Hardware belden hirschmann_rsp25 - No
Hardware belden hirschmann_rsp30 - No
Hardware belden hirschmann_rsp35 - No
Hardware belden hirschmann_rspe30 - No
Hardware belden hirschmann_rspe32 - No
Hardware belden hirschmann_rspe35 - No
Hardware belden hirschmann_rspe37 - No
Operating System belden hirschmann_hios ≤ 07.5.01 Yes
Hardware belden hirschmann_msp40 - No
Hardware belden hirschmann_octopus_os3 - No
Operating System belden hirschmann_hios ≤ 07.2.04 Yes
Hardware belden hirschmann_dragon_mach4000 - No
Hardware belden hirschmann_dragon_mach4500 - No
Operating System belden hirschmann_hios ≤ 05.3.06 Yes
Hardware belden hirschmann_eagle_one - No
Hardware belden hirschmann_eagle20 - No
Hardware belden hirschmann_eagle30 - No
Operating System belden garrettcom_magnum_dx940e_firmware ≤ 1.0.1_y7 Yes
Hardware belden garrettcom_magnum_dx940e - No

References