VendorsQnxrtos6.3.0
Vulnerabilities

Qnx Rtos 6.3.0

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

6CVEs
CVE-2006-0623
QNX Neutrino RTOS 6.3.0 ships /etc/rc.d/rc.local with world-writable permissions, which allows local users to modify the file and execute arbitrary code at system startup.
Published 2006-02-09 · Modified
7.21 PoCEPSS 0.009
CVE-2006-0622
QNX Neutrino RTOS 6.3.0 allows local users to cause a denial of service (hang) by supplying a "break *0xb032d59f" command to gdb.
Published 2006-02-09 · Modified
4.9EPSS 0.005
CVE-2005-3928
Buffer overflow in phgrafx in QNX 6.2.1 and 6.3.0 allows local users to execute arbitrary code via a long command line argument.
Published 2005-11-30 · Modified
4.61 PoCEPSS 0.012
CVE-2004-1391
Untrusted execution path vulnerability in the PPPoE daemon (PPPoEd) in QNX RTP 6.1 allows local users to execute arbitrary programs by modifying the PATH environment variable to point to a malicious mount program.
Published 2005-02-06 · Modified
4.6EPSS 0.006
CVE-2006-0619
Multiple stack-based buffer overflows in QNX Neutrino RTOS 6.3.0 allow local users to execute arbitrary code via long (1) ABLPATH or (2) ABLANG environment variables in the libAP library (libAp.so.2) or (3) a long PHOTON_PATH environment variable to the setitem function in the libph library.
Published 2006-02-09 · Modified
4.6EPSS 0.005
CVE-2005-2725
The inputtrap utility in QNX RTOS 6.1.0, 6.3, and possibly earlier versions does not properly check permissions when the -t flag is specified, which allows local users to read arbitrary files.
Published 2005-08-29 · Modified
2.11 PoCEPSS 0.008