BDU:2020-01281

Scores

EPSS

0.000none0.0%
0%20%40%60%80%100%

Percentile: 0.0%

CVSS

9.8critical3.x
0246810

CVSS Score: 9.8/10

All CVSS Scores

CVSS 3.x
9.8

Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

CVSS 2.0
10.0

Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Description

Уязвимость протокола TCP операционных систем реального времени Wind River VxWorks связана с потерей целочисленного значения «TCP Urgent Pointer=0». Эксплуатация уязвимости может позволить нарушителю, действующему удаленно, вызвать отказ в обслуживании путем отправки специально сформированных TCP-пакетов

Scaner-VS 7 — a modern vulnerability management solution

Uses this database for vulnerability detection. High-speed search, cross-platform, advanced configuration audit, and flexible filtering. Suitable for organizations of any size.
Learn more about Scaner-VS 7

Sources

bdu

Related Vulnerabilities

Exploits

Exploit ID: 47233

Source: exploitdb

URL: https://www.exploit-db.com/exploits/47233

Recommendations

Source: bdu

Использование рекомендаций:
Для Hirschmann:
https://www.belden.com/hubfs/support/security/bulletins/Belden_Security_Bulletin_BSECV-2019-05_1v3.pdf?hsLang=en

Для Siemens:
https://cert-portal.siemens.com/productcert/pdf/ssa-189842.pdf
https://cert-portal.siemens.com/productcert/pdf/ssa-632562.pdf

Для Wind River:
https://support.f5.com/csp/article/K41190253
https://support2.windriver.com/index.php?page=cve&on=view&id=CVE-2019-12256

Для NetApp:
https://security.netapp.com/advisory/ntap-20190802-0001/

URL: https://bdu.fstec.ru/vul/2020-01281

Vulnerable Software (184)

Type: Configuration

Vendor: belden inc.

Product: garrettcom dx

Operating System: ruggedcom win70xxb base station *

Trait:
{  "version_end_including": "1.0.2 Y2"}

Source: bdu

Type: Configuration

Vendor: belden inc.

Product: garrettcom dx

Operating System: siprotec 5 cpu cp200 *

Trait:
{  "version_end_including": "1.0.2 Y2"}

Source: bdu

Type: Configuration

Vendor: belden inc.

Product: garrettcom dx

Operating System: hirschmann hios RSP до 07.0.08 включительно

Trait:
{  "version_end_including": "1.0.2 Y2"}

Source: bdu

Type: Configuration

Vendor: belden inc.

Product: garrettcom dx

Operating System: hirschmann hios EES до 07.0.08 включительно

Trait:
{  "version_end_including": "1.0.2 Y2"}

Source: bdu

Type: Configuration

Vendor: belden inc.

Product: garrettcom dx

Operating System: hirschmann hios GRS до 07.0.08 включительно

Trait:
{  "version_end_including": "1.0.2 Y2"}

Source: bdu

Type: Configuration

Vendor: belden inc.

Product: garrettcom dx

Operating System: hirschmann hios OS до 07.0.08 включительно

Trait:
{  "version_end_including": "1.0.2 Y2"}

Source: bdu

Type: Configuration

Vendor: belden inc.

Product: garrettcom dx

Operating System: hirschmann hios RES до 07.0.08 включительно

Trait:
{  "version_end_including": "1.0.2 Y2"}

Source: bdu

Type: Configuration

Vendor: belden inc.

Product: garrettcom dx

Operating System: hirschmann hios OS3 до 07.5.02 включительно

Trait:
{  "version_end_including": "1.0.2 Y2"}

Source: bdu

Type: Configuration

Vendor: belden inc.

Product: garrettcom dx

Operating System: vxworks *

Trait:
{  "version_end_including": "1.0.2 Y2"}

Source: bdu

Type: Configuration

Vendor: belden inc.

Product: garrettcom dx

Operating System: hirschmann hios RSPS до 07.0.08 включительно

Trait:
{  "version_end_including": "1.0.2 Y2"}

Source: bdu

Type: Configuration

Vendor: belden inc.

Product: garrettcom dx

Operating System: garrettcom dx DX940e до 1.0.2 Y2 включительно

Trait:
{  "version_end_including": "1.0.2 Y2"}

Source: bdu

Type: Configuration

Vendor: belden inc.

Product: garrettcom dx

Operating System: ruggedcom win72xx base station *

Trait:
{  "version_end_including": "1.0.2 Y2"}

Source: bdu

Type: Configuration

Vendor: belden inc.

Product: garrettcom dx

Operating System: hirschmann hios MSP до 07.0.08 включительно

Trait:
{  "version_end_including": "1.0.2 Y2"}

Source: bdu

Type: Configuration

Vendor: belden inc.

Product: garrettcom dx

Operating System: hirschmann hios EESX до 07.0.08 включительно

Trait:
{  "version_end_including": "1.0.2 Y2"}

Source: bdu

Type: Configuration

Vendor: belden inc.

Product: garrettcom dx

Operating System: hirschmann hios RSPE TSN до 08.0.01 включительно

Trait:
{  "version_end_including": "1.0.2 Y2"}

Source: bdu

Type: Configuration

Vendor: belden inc.

Product: garrettcom dx

Operating System: hirschmann hios DRAGON MACH 4x00 до 07.2.05 включительно

Trait:
{  "version_end_including": "1.0.2 Y2"}

Source: bdu

Type: Configuration

Vendor: belden inc.

Product: garrettcom dx

Operating System: siprotec 5 cpu cp100 *

Trait:
{  "version_end_including": "1.0.2 Y2"}

Source: bdu

Type: Configuration

Vendor: belden inc.

Product: garrettcom dx

Operating System: siprotec 5 cpu cp300 *

Trait:
{  "version_end_including": "1.0.2 Y2"}

Source: bdu

Type: Configuration

Vendor: belden inc.

Product: garrettcom dx

Operating System: hirschmann hios RSPE до 07.0.08 включительно

Trait:
{  "version_end_including": "1.0.2 Y2"}

Source: bdu

Type: Configuration

Vendor: belden inc.

Product: garrettcom dx

Operating System: hirschmann hios RSPL до 07.0.08 включительно

Trait:
{  "version_end_including": "1.0.2 Y2"}

Source: bdu