In the "Wind River Linux End-March 2015 Security Bulletin", it is not clear that this information is for the latest RCPL. This should be clearly stated: https://knowledge.windriver.com/en-us/000_Products/000/010/030/000/000_Wind_River_Linux_End-March_2015_Security_Bulletin
If you wonder if your RCPL version is affected by a CVE, read the "Wind River Linux End-March 2015 Security Bulletin" page, open the wrlinux-end-march-2015-security-bulletin.csv and the wrlinux-end-march-2015-security-bulletin.pdf files: this information is nowhere to find. So, what RCPL is affected?