-

Wind River Security Scanning Service for Linux CVEs Offers Path to Remediation and Long-Term Maintenance Through the Full Lifecycle

ALAMEDA, Calif.--(BUSINESS WIRE)--Wind River®, a global leader in delivering software for mission-critical intelligent systems, has introduced Wind River Studio Linux Security Scanning Service. The service, currently available to use at no charge, provides professional-grade scanning to identify Common Vulnerabilities and Exposures (CVEs). Tuned to the unique needs of embedded Linux development, it also indicates whether a remediation solution is already available for a given CVE, including fixes and patches available from Wind River.

“In a highly connected and complex computing landscape where security exploitations are becoming more prevalent, the effective and proactive monitoring and management of CVEs is a top priority. In the rush to add new features, get to market faster, and achieve platform stability, CVEs often go inadequately addressed in the maintenance lifecycle,” said Amit Ronen, chief customer officer, Wind River. “Leveraging our many years of Linux experience and expertise, Studio Linux Security Scanning Service helps developers quickly identify high-risk vulnerabilities, prioritize remediation efforts, and enhance the security of their Linux-based devices and systems.”

Once a developer runs a software bill of materials (SBOM) or manifest in the scanner, it analyzes specific platform layers, including kernel, user space, libraries, and other system components, and compares it to an extensive knowledge base to accurately identify critical vulnerabilities. The scanner can also display licenses leveraged within the platform’s packages to assist artifact generation and compliance requirements. The resulting list of identified vulnerabilities is ranked according to the Common Vulnerability Scoring System (CVSS v3).

The service leverages a knowledge base that has been developed from a curated collection of data sources, including the Yocto Project, NIST, and the Wind River database of CVEs.

Organizations looking to take the next step to address CVEs can contact Wind River to develop a mitigation plan. Wind River experts can engage with teams to rapidly identify and prioritize CVEs based on the severity and the exploitability of each vulnerability identified, assess the time and effort needed to secure the Linux platform, and develop the path to mitigation and remediation.

For more information about the Studio Linux Security Scanning Service and to conduct a free scan, visit www.windriver.com/services/linux/security-scanning.

About Wind River

Wind River is a global leader in delivering software for mission-critical intelligent systems. For more than four decades, the company has been an innovator and pioneer, powering billions of devices and systems that require the highest levels of security, safety, and reliability. Wind River software and expertise are accelerating digital transformation across industries, including automotive, aerospace, defense, industrial, medical, and telecommunications. The company offers a comprehensive portfolio supported by world-class global professional services and support and a broad partner ecosystem. To learn more, visit Wind River at www.windriver.com.

Wind River is a trademark or registered trademark of Wind River Systems, Inc., and its affiliates. Other names may be the trademarks of their respective owners.

Contacts

MEDIA CONTACT
Jenny Suh
Wind River
510-749-2972
jenny.suh@windriver.com

Wind River Systems, Inc.


Release Versions

Contacts

MEDIA CONTACT
Jenny Suh
Wind River
510-749-2972
jenny.suh@windriver.com

Social Media Profiles
More News From Wind River Systems, Inc.

Wind River Announces Strategic Collaboration with AMD, Delivering Industry’s First Unified O-RAN and AI-RAN Platform

BARCELONA, Spain--(BUSINESS WIRE)--Wind River, an Aptiv company and global leader in software for the intelligent edge, is collaborating with AMD to deliver the industry’s first commercially available platform that unifies open radio access network (Open RAN) functions and artificial intelligence-powered radio access network (AI-RAN) workloads on shared hardware. The solution addresses a critical challenge facing operators: Traditional approaches require separate systems for radio access networ...

Aptiv and Wind River Showcase Network V2X Solution for Sensor Sharing Leveraging Verizon’s Connected Driving Platform

BARCELONA, Spain--(BUSINESS WIRE)--Aptiv PLC (NYSE: APTV) and Wind River, an Aptiv company and global leader in software for the intelligent edge, is unveiling a proof-of-concept showcasing a mobile-network Vehicle-to-Everything (V2X) solution for sharing of sensor data between vehicles to support advanced safety and automation features leveraging the Verizon Business connected-driving platform Edge Transportation Exchange. Showcasing at MWC Barcelona, the demonstration highlights how vehicles...

Wind River and Vodafone Collaborate to Advance AI-RAN Operations at Scale for Open RAN

ALAMEDA, Calif.--(BUSINESS WIRE)--Wind River, an Aptiv company and global leader in software for the intelligent edge, and Vodafone are collaborating to operationalize AI-RAN for Open RAN networks. The joint solution will be showcased at MWC Barcelona, March 2–5, in the Wind River booth (Hall 2, Stand 2F25). Open RAN is transforming how networks are built. AI-RAN is transforming how they are operated. As operators deploy more disaggregated infrastructure, traditional operations models are reach...
Back to Newsroom