VYPR
Critical severity9.8NVD Advisory· Published May 12, 2021· Updated Jun 17, 2026

CVE-2020-35198

CVE-2020-35198

Description

An issue was discovered in Wind River VxWorks 7. The memory allocator has a possible integer overflow in calculating a memory block's size to be allocated by calloc(). As a result, the actual memory allocated is smaller than the buffer size specified by the arguments, leading to memory corruption.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

8
  • cpe:2.3:a:oracle:communications_eagle:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:oracle:communications_eagle:*:*:*:*:*:*:*:*range: >=46.8.0,<=46.8.2
    • cpe:2.3:a:oracle:communications_eagle:46.7.0:*:*:*:*:*:*:*
  • Windriver/Vxworks5 versions
    cpe:2.3:o:windriver:vxworks:*:*:*:*:*:*:*:*+ 4 more
    • cpe:2.3:o:windriver:vxworks:*:*:*:*:*:*:*:*range: >=6.9,<6.9.4.12
    • cpe:2.3:o:windriver:vxworks:6.9.4.12:-:*:*:*:*:*:*
    • cpe:2.3:o:windriver:vxworks:6.9.4.12:rolling_cumulative_patch_layer1:*:*:*:*:*:*
    • cpe:2.3:o:windriver:vxworks:6.9.4.12:rolling_cumulative_patch_layer2:*:*:*:*:*:*
    • (no CPE)range: 7
  • Wind River/VxWorksdescription

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.

CVE-2020-35198 · Critical · VYPR