Back to Database
Status published
Critical
CVE-2016-20009
A DNS client stack-based buffer overflow in ipdnsc_decode_name() affects Wind...
Vulnerability Description
A DNS client stack-based buffer overflow in ipdnsc_decode_name() affects Wind River VxWorks 6.5 through 7. NOTE: This vulnerability only affects products that are no longer supported by the maintainer
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2016-20009
Credits & Attribution
No credits recorded in the NVD database.
References
More from windriver
View All →CVE-2022-38767
An issue was discovered in Wind River VxWorks 6.9 and...
Unknown
0
CVE-2022-23937
In Wind River VxWorks 6.9 and 7, a specific crafted...
Medium
5.3
CVE-2021-43268
An issue was discovered in VxWorks 6.9 through 7. In...
Medium
6.5
CVE-2021-29999
An issue was discovered in Wind River VxWorks through 6.8....
Critical
9.8
CVE-2021-29998
An issue was discovered in Wind River VxWorks before 6.5....
Critical
9.8
Affected Vendor
windriver
View all reports →Affected Software
vxworks, sgt-100 firmware, sgt-200 firmware, sgt-300 firmware, sgt-400 firmware, sgt-a20 firmware, sgt-a35 firmware, sgt-a65 firmware
Vulnerable Versions:
6.5
Timeline
Official Publish:
March 11th, 2021
Last Modified:
August 6th, 2024
Added to House:
July 20th, 2026
CVSS Vectors
V3:
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.