CVE-2019-12256: Buffer Overflow
Wind River VxWorks 6.9 and vx7 has a Buffer Overflow in the IPv4 component. There is an IPNET security vulnerability: Stack overflow in the parsing of IPv4 packets’ IP options.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2019-12256?
CVE-2019-12256 is considered a critical vulnerability due to the potential for remote code execution via a buffer overflow.
How do I fix CVE-2019-12256?
To fix CVE-2019-12256, upgrade affected Wind River VxWorks versions to the latest patch provided by the vendor.
What systems are affected by CVE-2019-12256?
CVE-2019-12256 affects Wind River VxWorks 6.9 and vx7, as well as certain versions of NetApp E-Series SANtricity OS Controller and SonicWall SonicOS.
What type of vulnerability is CVE-2019-12256?
CVE-2019-12256 is a buffer overflow vulnerability found in the parsing of IPv4 packet options.
Can CVE-2019-12256 be exploited remotely?
Yes, CVE-2019-12256 can be exploited remotely, potentially allowing unauthorized access to systems.