CVE-2019-12265: Medium severity wind river vxworks vulnerability
Wind River VxWorks 6.5, 6.6, 6.7, 6.8, 6.9.3 and 6.9.4 has a Memory Leak in the IGMPv3 client component. There is an IPNET security vulnerability: IGMP Information leak via IGMPv3 specific membership report.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2019-12265?
CVE-2019-12265 is classified with a medium severity due to the potential for an information leak.
How do I fix CVE-2019-12265?
To fix CVE-2019-12265, update the affected versions of Wind River VxWorks and SonicWall SonicOS to the latest patched versions.
Which software versions are affected by CVE-2019-12265?
CVE-2019-12265 affects Wind River VxWorks versions 6.5 through 6.9.4 and various versions of SonicWall SonicOS.
Can CVE-2019-12265 cause data loss?
CVE-2019-12265 does not directly cause data loss but can expose sensitive information that may lead to further exploitation.
Is CVE-2019-12265 exploitative remotely?
Yes, CVE-2019-12265 can be exploited remotely, allowing an attacker to access leaked information via the IGMPv3 client.