Oracle Communications Eagle vulnerabilities
4 known vulnerabilities affecting oracle/communications_eagle.
Total CVEs
4
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL3HIGH1
Vulnerabilities
Page 1 of 1
CVE-2020-35198CRITICALCVSS 9.8≥ 46.8.0, ≤ 46.8.2≥ 46.9.1, ≤ 46.9.3+1 more2021-05-12
CVE-2020-35198 [CRITICAL] CWE-190 CVE-2020-35198: An issue was discovered in Wind River VxWorks 7. The memory allocator has a possible integer overflo
An issue was discovered in Wind River VxWorks 7. The memory allocator has a possible integer overflow in calculating a memory block's size to be allocated by calloc(). As a result, the actual memory allocated is smaller than the buffer size specified by the arguments, leading to memory corruption.
nvd
CVE-2020-28895HIGHCVSS 7.3≥ 46.8.0, ≤ 48.6.2≥ 46.9.1, ≤ 46.9.3+1 more2021-02-03
CVE-2020-28895 [HIGH] CWE-190 CVE-2020-28895: In Wind River VxWorks, memory allocator has a possible overflow in calculating the memory block's si
In Wind River VxWorks, memory allocator has a possible overflow in calculating the memory block's size to be allocated by calloc(). As a result, the actual memory allocated is smaller than the buffer size specified by the arguments, leading to memory corruption.
nvd
CVE-2019-12261CRITICALCVSS 9.8≥ 46.6.0, ≤ 46.8.22019-08-09
CVE-2019-12261 [CRITICAL] CWE-120 CVE-2019-12261: Wind River VxWorks 6.7 though 6.9 and vx7 has a Buffer Overflow in the TCP component (issue 3 of 4).
Wind River VxWorks 6.7 though 6.9 and vx7 has a Buffer Overflow in the TCP component (issue 3 of 4). This is an IPNET security vulnerability: TCP Urgent Pointer state confusion during connect() to a remote host.
nvd
CVE-2019-12260CRITICALCVSS 9.8≥ 46.6.0, ≤ 46.8.22019-08-09
CVE-2019-12260 [CRITICAL] CWE-120 CVE-2019-12260: Wind River VxWorks 6.9 and vx7 has a Buffer Overflow in the TCP component (issue 2 of 4). This is an
Wind River VxWorks 6.9 and vx7 has a Buffer Overflow in the TCP component (issue 2 of 4). This is an IPNET security vulnerability: TCP Urgent Pointer state confusion caused by a malformed TCP AO option.
nvd