First published: Wed Aug 14 2019(Updated: )
Wind River VxWorks 6.6, 6.7, 6.8, 6.9 and 7 has Incorrect Access Control in the RARP client component. IPNET security vulnerability: Handling of unsolicited Reverse ARP replies (Logical Flaw).
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Wind River VxWorks | =6.6 | |
Wind River VxWorks | =6.7 | |
Wind River VxWorks | =6.8 | |
Wind River VxWorks | =6.9 | |
Wind River VxWorks | =7.0 | |
Belden Hirschmann HIOS | <=07.0.07 | |
Belden Hirschmann EES20 | ||
Belden Hirschmann EES25 | ||
Belden Hirschmann EESX20 | ||
Belden Hirschmann EESX30 | ||
Belden Hirschmann GRS1020 | ||
Belden Hirschmann GRS1030 | ||
Belden Hirschmann GRS1042 | ||
Belden Hirschmann GRS1120 | ||
Belden Hirschmann GRS1130 | ||
Belden Hirschmann GRS1142 | ||
Belden Hirschmann MSP30 | ||
Belden Hirschmann MSP32 | ||
Belden Hirschmann Rail Switch Power Lite | ||
Belden Hirschmann Rail Switch Power Smart | ||
Belden Hirschmann RED25 | ||
Belden Hirschmann RSP20 | ||
Belden Hirschmann RSP25 | ||
Belden Hirschmann RSP30 | ||
Belden Hirschmann RSP35 | ||
Belden Hirschmann RSP-E30 | ||
Belden Hirschmann RSPE32 | ||
Belden Hirschmann RSPE35 | ||
Belden Hirschmann RSPE37 | ||
Belden Hirschmann HIOS | <=07.5.01 | |
Belden Hirschmann MSP40 | ||
Belden Hirschmann Octopus | ||
Belden Hirschmann HIOS | <=07.2.04 | |
belden hirschmann dragon mach4000 | ||
Belden Hirschmann Dragon MACH4500 | ||
Belden Hirschmann HIOS | <=05.3.06 | |
Eagle One | ||
Belden Hirschmann Eagle20 | ||
Belden Hirschmann Eagle30 | ||
Garrettcom Magnum DX940E | <=1.0.1_y7 | |
Garrettcom Magnum DX940E | ||
Siemens RuggedCom Win7000 | <bs5.2.461.17 | |
Siemens Ruggedcom Win7000 Firmware | ||
Siemens RuggedCom WIN7018 Firmware | <bs5.2.461.17 | |
Siemens RuggedCom WIN7018 Firmware | ||
Siemens Ruggedcom Win7025 Firmware | <bs5.2.461.17 | |
Siemens Ruggedcom Win7025 Firmware | ||
Siemens Ruggedcom WIN7200 Firmware | <bs5.2.461.17 | |
Siemens Ruggedcom WIN7200 Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2019-12262.
The severity level of CVE-2019-12262 is critical with a severity value of 9.8.
Wind River VxWorks versions 6.6, 6.7, 6.8, 6.9, and 7.0 are affected by CVE-2019-12262.
CVE-2019-12262 is a security vulnerability in the RARP client component of Wind River VxWorks, which allows for incorrect access control due to a logical flaw in handling unsolicited Reverse ARP replies.
Yes, you can find more information about CVE-2019-12262 in the following references: [Link 1](https://cert-portal.siemens.com/productcert/pdf/ssa-189842.pdf), [Link 2](https://cert-portal.siemens.com/productcert/pdf/ssa-352504.pdf), [Link 3](https://support.f5.com/csp/article/K41190253).