Qnx / Rtos
18 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2002-2407 | Certain patches for QNX Neutrino realtime operating system (RTOS) 6.2.0 set insecure permissions for the files (1) /sbin/io-audio by OS Update Patch A, (2) /bi… | MEDIUM | 6.9 | Nov 1, 2007 |
| CVE-2006-0623 | QNX Neutrino RTOS 6.3.0 ships /etc/rc.d/rc.local with world-writable permissions, which allows local users to modify the file and execute arbitrary code at sys… | HIGH | 7.2 | Feb 9, 2006 |
| CVE-2006-0622 | QNX Neutrino RTOS 6.3.0 allows local users to cause a denial of service (hang) by supplying a "break *0xb032d59f" command to gdb. | MEDIUM | 4.9 | Feb 9, 2006 |
| CVE-2006-0621 | Multiple buffer overflows in QNX Neutrino RTOS 6.2.0 allow local users to execute arbitrary code via a long first argument to the (1) su or (2) passwd commands. | HIGH | 7.2 | Feb 9, 2006 |
| CVE-2006-0620 | Race condition in phfont in QNX Neutrino RTOS 6.2.1 allows local users to execute arbitrary code via unspecified manipulations of the PHFONT and PHOTON2_PATH e… | MEDIUM | 6.2 | Feb 9, 2006 |
| CVE-2006-0619 | Multiple stack-based buffer overflows in QNX Neutrino RTOS 6.3.0 allow local users to execute arbitrary code via long (1) ABLPATH or (2) ABLANG environment var… | MEDIUM | 4.6 | Feb 9, 2006 |
| CVE-2005-1528 | Untrusted search path vulnerability in the crttrap command in QNX Neutrino RTOS 6.2.1 allows local users to load arbitrary libraries via a LD_LIBRARY_PATH envi… | HIGH | 7.2 | Feb 9, 2006 |
| CVE-2005-3928 | Buffer overflow in phgrafx in QNX 6.2.1 and 6.3.0 allows local users to execute arbitrary code via a long command line argument. | MEDIUM | 4.6 | Nov 30, 2005 |
| CVE-2005-2725 | The inputtrap utility in QNX RTOS 6.1.0, 6.3, and possibly earlier versions does not properly check permissions when the -t flag is specified, which allows loc… | LOW | 2.1 | Aug 29, 2005 |
| CVE-2002-2120 | Multiple buffer overflows in QNX RTOS 4.25 may allow attackers to execute arbitrary code via long filename arguments to (1) Watcom or (2) int10. | MEDIUM | 4.6 | Aug 5, 2005 |
| CVE-2002-2042 | ptrace in the QNX realtime operating system (RTOS) 4.25 and 6.1.0 allows programs to attach to privileged processes, which could allow local users to execute a… | HIGH | 7.2 | Jul 14, 2005 |
| CVE-2002-2041 | Multiple buffer overflows in realtime operating system (RTOS) 6.1.0 allows local users to execute arbitrary code via (1) a long ABLANG environment variable in… | HIGH | 7.2 | Jul 14, 2005 |
| CVE-2002-2040 | The (1) phrafx and (2) phgrafx-startup programs in QNX realtime operating system (RTOS) 4.25 and 6.1.0 do not properly drop privileges before executing the sys… | HIGH | 7.2 | Jul 14, 2005 |
| CVE-2002-2039 | /bin/su in QNX realtime operating system (RTOS) 4.25 and 6.1.0 allows local users to obtain sensitive information from core dump files by sending the SIGSERV (… | LOW | 2.1 | Jul 14, 2005 |
| CVE-2002-1983 | The timer implementation in QNX RTOS 6.1.0 allows local users to cause a denial of service (hang) and possibly execute arbitrary code by creating multiple time… | LOW | 2.1 | Jun 28, 2005 |
| CVE-2004-1391 | Untrusted execution path vulnerability in the PPPoE daemon (PPPoEd) in QNX RTP 6.1 allows local users to execute arbitrary programs by modifying the PATH envir… | MEDIUM | 4.6 | Feb 6, 2005 |
| CVE-2004-1390 | Multiple buffer overflows in the PPPoE daemon (PPPoEd) in QNX RTP 6.1 allow remote attackers to execute arbitrary code via a long argument to the (1) -F, (2) n… | HIGH | 10.0 | Feb 6, 2005 |
| CVE-2002-1239 | QNX Neutrino RTOS 6.2.0 uses the PATH environment variable to find and execute the cp program while operating at raised privileges, which allows local users to… | HIGH | 7.2 | Sep 1, 2004 |
Showing 1 to 18 of 18 CVEs