CVE-2022-23937
Published Mar 29, 2022
·Updated
In Wind River VxWorks 6.9 and 7, a specific crafted packet may lead to an out-of-bounds read during an IKE initial exchange scenario.
Affected Software
2 affected components
Windriver Vxworks=6.9
Windriver Vxworks=7.0
Event History
Mar 29, 2022
CVE Published
via MITRE·01:21 AM
Data Sourced
via MITRE·01:21 AM
DescriptionSeverity
Frequently Asked Questions
1
What is CVE-2022-23937?
CVE-2022-23937 is a vulnerability in Wind River VxWorks 6.9 and 7 that allows an attacker to perform an out-of-bounds read during an IKE initial exchange scenario.
2
How severe is CVE-2022-23937?
CVE-2022-23937 has a severity rating of 7.5, which is considered high.
3
Which software versions are affected by CVE-2022-23937?
CVE-2022-23937 affects Wind River VxWorks 6.9 and 7.0.
4
How can I fix CVE-2022-23937?
To fix CVE-2022-23937, it is recommended to apply the relevant patches provided by Wind River.
5
Where can I find more information about CVE-2022-23937?
You can find more information about CVE-2022-23937 on the Wind River support website: [Link to Wind River support website]