VYPR
High severity8.1NVD Advisory· Published May 29, 2019· Updated Jun 17, 2026

CVE-2019-9865

CVE-2019-9865

Description

When RPC is enabled in Wind River VxWorks 6.9 prior to 6.9.1, a specially crafted RPC request can trigger an integer overflow leading to an out-of-bounds memory copy. It may allow remote attackers to cause a denial of service (crash) or possibly execute arbitrary code.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

6
  • Windriver/Vxworks5 versions
    cpe:2.3:o:windriver:vxworks:*:*:*:*:*:*:*:*+ 4 more
    • cpe:2.3:o:windriver:vxworks:*:*:*:*:*:*:*:*range: >=6.9,<6.9.1
    • cpe:2.3:o:windriver:vxworks:6.6:*:*:*:*:*:*:*
    • cpe:2.3:o:windriver:vxworks:6.7:*:*:*:*:*:*:*
    • cpe:2.3:o:windriver:vxworks:6.8:*:*:*:*:*:*:*
    • (no CPE)range: <6.9.1
  • Wind River/VxWorksdescription

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.