CVE-2026-102004
published 2026-09-28CVE-2026-102004: Wind River VxWorks 7 prior to 26.09, specific system call arguments can result in memory corruption within the memory management subsystem. Fixed in Version…
PriorityP341high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.11%
1.2th percentile
Wind River VxWorks 7 prior to 26.09, specific system call arguments can result in memory corruption within the memory management subsystem. Fixed in Version 26.09
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| wind_river_systems_inc | vxworks_7 | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
VulDB
Wind River Systems VxWorks 25.03 Memory Management Subsystem memory corruption
vuldb·2026-09-28·CVSS 7.8
CVE-2026-102004 [HIGH] Wind River Systems VxWorks 25.03 Memory Management Subsystem memory corruption
A vulnerability labeled as very critical has been found in Wind River Systems VxWorks 25.03. This issue affects some unknown processing of the component Memory Management Subsystem. The manipulation results in memory corruption.
This vulnerability is reported as CVE-2026-102004. The attack requires a local approach. No exploit exists.
The affected component should be upgraded.
GHSA
Wind River VxWorks 7 prior to 26.09, specific system call arguments can result in memory corruption within the memory management subsystem.
ghsa_unreviewed·2026-09-28
CVE-2026-102004 [HIGH] CWE-787 Wind River VxWorks 7 prior to 26.09, specific system call arguments can result in memory corruption within the memory management subsystem.
Wind River VxWorks 7 prior to 26.09, specific system call arguments can result in memory corruption within the memory management subsystem. Fixed in Version 26.09
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2026-09-28
Published