Ghs develops the Integrity real-time operating system, a niche but specialized platform for embedded and safety-critical applications where the durable signal centers on low-level memory and format-handling issues such as out-of-bounds writes and externally-controlled format strings. Treat this as a compact vendor profile; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Ghs over time
Signals from CVEs in this vendor scope (5 CVEs).
5 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2019-7714CRITICAL An issue was discovered in Interpeak IPWEBS on Green Hills INTEGRITY RTOS 5.0.4. It allocates 60 bytes for the HTTP Authentication header. However, when copying this header to pars | Mar 26, 2019 | 9.8 | 28 | NO | NO |
CVE-2019-7713CRITICAL An issue was discovered in the Interpeak IPCOMShell TELNET server on Green Hills INTEGRITY RTOS 5.0.4. There is a heap-based buffer overflow in the function responsible for printin | Mar 26, 2019 | 9.8 | 27 | NO | NO |
CVE-2019-7711HIGH An issue was discovered in the Interpeak IPCOMShell TELNET server on Green Hills INTEGRITY RTOS 5.0.4. The undocumented shell command "prompt" sets the (user controlled) shell's pr | Mar 26, 2019 | 7.5 | 24 | NO | NO |
CVE-2019-7715HIGH An issue was discovered in the Interpeak IPCOMShell TELNET server on Green Hills INTEGRITY RTOS 5.0.4. The main shell handler function uses the value of the environment variable ip | Mar 26, 2019 | 7.5 | 22 | NO | NO |
CVE-2019-7712HIGH An issue was discovered in handler_ipcom_shell_pwd in the Interpeak IPCOMShell TELNET server on Green Hills INTEGRITY RTOS 5.0.4. When using the pwd command, the current working di | Mar 26, 2019 | 7.5 | 19 | NO | NO |
Signals from CVEs in this vendor scope (5 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Ghs.
Media articles that mention a CVE ID that affects a product developed by Ghs — matched by CVE ID, not by vendor name.