Vulnerability Description
IPSSH (aka the SSH server) in Wind River VxWorks 6.5 through 6.9 allows remote attackers to execute arbitrary code or cause a denial of service (daemon hang) via a crafted public-key authentication request.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Windriver | Vxworks | 6.5 |
Related Weaknesses (CWE)
References
- http://ics-cert.us-cert.gov/advisories/ICSA-13-091-01
- http://jvn.jp/en/jp/JVN20671901/995359/index.html
- http://jvn.jp/en/jp/JVN20671901/index.html
- http://jvndb.jvn.jp/jvndb/JVNDB-2013-000021
- http://ics-cert.us-cert.gov/advisories/ICSA-13-091-01
- http://jvn.jp/en/jp/JVN20671901/995359/index.html
- http://jvn.jp/en/jp/JVN20671901/index.html
- http://jvndb.jvn.jp/jvndb/JVNDB-2013-000021
FAQ
What is CVE-2013-0714?
CVE-2013-0714 is a vulnerability with a CVSS score of 10.0 (HIGH). IPSSH (aka the SSH server) in Wind River VxWorks 6.5 through 6.9 allows remote attackers to execute arbitrary code or cause a denial of service (daemon hang) via a crafted public-key authentication re...
How severe is CVE-2013-0714?
CVE-2013-0714 has been rated HIGH with a CVSS base score of 10.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2013-0714?
Check the references section above for vendor advisories and patch information. Affected products include: Windriver Vxworks.