Versio.io

CVE-2016-20009

Common vulnerabilities & exposures (CVE)

CVE databaseCVE database blogpostRelease & EoL database
 
Published at: - 11-03-2021 11:15
Last modified: - 05-04-2022 07:24
Total changes: - 4

Description

** UNSUPPORTED WHEN ASSIGNED ** A DNS client stack-based buffer overflow in ipdnsc_decode_name() affects Wind River VxWorks 6.5 through 7. NOTE: This vulnerability only affects products that are no longer supported by the maintainer.

Common Vulnerability Scoring System (CVSS)

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Low
Attack complexity
Network
Attack vector
High
Availability
High
Confidentiality
High
Integrity
None
Privileges required
Unchanged
Scope
None
User interaction
9.8
Base score
3.9
5.9
Exploitability score
Impact score
 

Verification logic

OR
OR
vendor=windriver AND product=vxworks AND versionEndIncluding=7.0 AND versionStartIncluding=6.5
AND
OR
vendor=siemens AND product=sgt-100_firmware
OR
vendor=siemens AND product=sgt-100 AND version=-
AND
OR
vendor=siemens AND product=sgt-200_firmware
OR
vendor=siemens AND product=sgt-200 AND version=-
AND
OR
vendor=siemens AND product=sgt-300_firmware
OR
vendor=siemens AND product=sgt-300 AND version=-
AND
OR
vendor=siemens AND product=sgt-400_firmware
OR
vendor=siemens AND product=sgt-400 AND version=-
AND
OR
vendor=siemens AND product=sgt-a20_firmware
OR
vendor=siemens AND product=sgt-a20 AND version=-
AND
OR
vendor=siemens AND product=sgt-a35_firmware
OR
vendor=siemens AND product=sgt-a35 AND version=-
AND
OR
vendor=siemens AND product=sgt-a65_firmware
OR
vendor=siemens AND product=sgt-a65 AND version=-
 

Reference

 


Keywords

NVD

 

CVE-2016-20009

 

CVE

 

Common vulnerabilities & exposures

 

CVSS

 

Common vulnerability scoring system

 

Security

 

Vulnerabilities

 

Exposures

 

We use cookies to ensure that we give you the best experience on our website. Read privacy policies for more information.