Mars Rover Susceptible to Integer Overflow Vulnerability

The Mars Rover has parts that run on VxWorks, and with that, bring some vulnerabilities. The Integer Overflow vulnerability was in the OS which allows targeting a specific part of the operating system and write to memory on the machine running.

An attacker would have to target a VxWorks device with port 111 open, and the vulnerability exploited, it would be possible to set up a backdoor account and control functions of the operating system.

Aside from the Mars Rover, there are approximately 10,000 devices on the Internet hosted in the US that run VxWorks, but it’s not easily known if those devices are running a version of the OS that has the vulnerability.

This entry was posted in Security Blog and tagged , , , . Bookmark the permalink.