Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2013-0714

Overview

Vulnerability Score 10.0 10.0
CVE Id CVE-2013-0714
Last Modified 20 May 2013 11:23:04
Published 20 Mar 2013 02:55:01
Confidentiality Impact COMPLETE COMPLETE
Integrity Impact COMPLETE COMPLETE
Availability Impact COMPLETE COMPLETE
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2013-0714

Summary

IPSSH (aka the SSH server) in Wind River VxWorks 6.5 through 6.9 allows remote attackers to execute arbitrary code or cause a denial of service (daemon hang) via a crafted public-key authentication request.

Vulnerable Systems

Operating System

  • Windriver Vxworks 6.5

  • Windriver Vxworks 6.6

  • Windriver Vxworks 6.7

  • Windriver Vxworks 6.8

  • Windriver Vxworks 6.9


References

JVNDB - JVNDB-2013-000021

JVN - JVN#20671901

MISC - http://jvn.jp/en/jp/JVN20671901/995359/index.html

MISC - http://ics-cert.us-cert.gov/advisories/ICSA-13-091-01


Last Updated: 17 Apr 2014 09:56:53