Exploitation Summary
CVE-2019-12255 has been observed exploited in the wild (reported by VulnCheck KEV). EIP tracks 2 public exploits from researchers including Zhou Yu, sud0woodo.
AI-analyzed exploit summary This PoC exploits an integer underflow vulnerability in VxWorks' TCP stack by sending a crafted packet with an urgent pointer set to 0, leading to a denial-of-service (DoS) condition. The exploit establishes a TCP connection and sends a malicious payload to trigger the vulnerability.
Description
Wind River VxWorks has a Buffer Overflow in the TCP component (issue 1 of 4). This is a IPNET security vulnerability: TCP Urgent Pointer = 0 that leads to an integer underflow.
Exploits (2)
This PoC exploits an integer underflow vulnerability in VxWorks' TCP stack by sending a crafted packet with an urgent pointer set to 0, leading to a denial-of-service (DoS) condition. The exploit establishes a TCP connection and sends a malicious payload to trigger the vulnerability.
This repository contains Suricata LUA scripts designed to detect exploitation attempts for CVE-2019-12255, CVE-2019-12256, CVE-2019-12258, and CVE-2019-12260. The scripts analyze network traffic for specific patterns indicative of these vulnerabilities but do not include functional exploit code.
References (11)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H