VYPR
High severity7.3NVD Advisory· Published Feb 3, 2021· Updated Jun 17, 2026

CVE-2020-28895

CVE-2020-28895

Description

In Wind River VxWorks, memory allocator has a possible overflow in calculating the memory block's size to be allocated by calloc(). As a result, the actual memory allocated is smaller than the buffer size specified by the arguments, leading to memory corruption.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

7
  • cpe:2.3:a:oracle:communications_eagle:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:oracle:communications_eagle:*:*:*:*:*:*:*:*range: >=46.8.0,<=48.6.2
    • cpe:2.3:a:oracle:communications_eagle:46.7.0:*:*:*:*:*:*:*
  • Windriver/Vxworks4 versions
    cpe:2.3:o:windriver:vxworks:*:*:*:*:*:*:*:*+ 3 more
    • cpe:2.3:o:windriver:vxworks:*:*:*:*:*:*:*:*range: >=6.9,<6.9.4.12
    • cpe:2.3:o:windriver:vxworks:6.9.4.12:-:*:*:*:*:*:*
    • cpe:2.3:o:windriver:vxworks:6.9.4.12:rolling_cumulative_patch_layer1:*:*:*:*:*:*
    • (no CPE)
  • Wind River/VxWorksdescription

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.