7.5
CVSSv2

CVE-2020-28895

Published: 03/02/2021 Updated: 12/05/2022
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
CVSS v3 Base Score: 7.3 | Impact Score: 3.4 | Exploitability Score: 3.9
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

In Wind River VxWorks, memory allocator has a possible overflow in calculating the memory block's size to be allocated by calloc(). As a result, the actual memory allocated is smaller than the buffer size specified by the arguments, leading to memory corruption.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

windriver vxworks

windriver vxworks 6.9.4.12

oracle communications eagle

oracle communications eagle 46.7.0

ICS Advisories

Multiple RTOS (Update D)
Critical Infrastructure Sectors: Energy