Vulnerability index

Browse CVEs

17 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Rtos HIGH 7.2
CVE-2006-0621

Multiple buffer overflows in QNX Neutrino RTOS 6.2.0 allow local users to execute arbitrary code via a long first argument to the (1) su or (2) passw…

Mitigation only
Fix from $1,950 2006-02-09
Rtos HIGH 7.2
CVE-2006-0623

QNX Neutrino RTOS 6.3.0 ships /etc/rc.d/rc.local with world-writable permissions, which allows local users to modify the file and execute arbitrary c…

Mitigation only
Fix from $1,950 2006-02-09
Rtos MEDIUM 6.2
CVE-2006-0620

Race condition in phfont in QNX Neutrino RTOS 6.2.1 allows local users to execute arbitrary code via unspecified manipulations of the PHFONT and PHOT…

No fix yet
Fix from $1,600 2006-02-09
Rtos HIGH 7.2
CVE-2005-1528

Untrusted search path vulnerability in the crttrap command in QNX Neutrino RTOS 6.2.1 allows local users to load arbitrary libraries via a LD_LIBRARY…

Mitigation only
Fix from $1,950 2005-12-31
Rtos HIGH 10.0
CVE-2004-1390EPSS 7%

Multiple buffer overflows in the PPPoE daemon (PPPoEd) in QNX RTP 6.1 allow remote attackers to execute arbitrary code via a long argument to the (1)…

No fix yet
Fix from $1,950 2004-12-31
Photon Microgui HIGH 7.2
CVE-2004-1681

Multiple buffer overflows in (1) phrelay-cfg, (2) phlocale, (3) pkg-installer, or (4) input-cfg in QNX Photon microGUI for QNX RTP 6.1 allow local us…

No fix yet
Fix from $1,950 2004-08-26
Rtp HIGH 10.0
CVE-2004-1682

Format string vulnerability in QNX 6.1 FTP client allows remote authenticated users to gain group bin privileges via format string specifiers in the …

Mitigation only
Fix from $1,950 2004-08-15
Rtos HIGH 7.2
CVE-2002-2040

The (1) phrafx and (2) phgrafx-startup programs in QNX realtime operating system (RTOS) 4.25 and 6.1.0 do not properly drop privileges before executi…

No fix yet
Fix from $1,950 2002-12-31
Rtos HIGH 7.2
CVE-2002-2041

Multiple buffer overflows in realtime operating system (RTOS) 6.1.0 allows local users to execute arbitrary code via (1) a long ABLANG environment va…

No fix yet
Fix from $1,950 2002-12-31
Rtos HIGH 7.2
CVE-2002-2042

ptrace in the QNX realtime operating system (RTOS) 4.25 and 6.1.0 allows programs to attach to privileged processes, which could allow local users to…

No fix yet
Fix from $1,950 2002-12-31
Rtos MEDIUM 6.9
CVE-2002-2407

Certain patches for QNX Neutrino realtime operating system (RTOS) 6.2.0 set insecure permissions for the files (1) /sbin/io-audio by OS Update Patch …

Mitigation only
Fix from $1,600 2002-12-31
Rtos HIGH 7.2
CVE-2002-1239

QNX Neutrino RTOS 6.2.0 uses the PATH environment variable to find and execute the cp program while operating at raised privileges, which allows loca…

Patch available
Fix from $1,950 2002-11-12
Rtp HIGH 7.5
CVE-2001-0325

Buffer overflow in QNX RTP 5.60 allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a large number of ar…

No fix yet
Fix from $1,950 2001-05-03
Voyager MEDIUM 5.0
CVE-2000-0903

Directory traversal vulnerability in Voyager web server 2.01B in the demo disks for QNX 405 allows remote attackers to read arbitrary files via a .. …

No fix yet
Fix from $1,600 2000-12-19
Voyager MEDIUM 5.0
CVE-2000-0904

Voyager web server 2.01B in the demo disks for QNX 405 stores sensitive web client information in the .photon directory in the web document root, whi…

No fix yet
Fix from $1,600 2000-12-19
Voyager MEDIUM 5.0
CVE-2000-0905

QNX Embedded Resource Manager in Voyager web server 2.01B in the demo disks for QNX 405 allows remote attackers to read sensitive system statistics i…

No fix yet
Fix from $1,600 2000-12-19
Qnx HIGH 7.2
CVE-2000-0250

The crypt function in QNX uses weak encryption, which allows local users to decrypt passwords.

No fix yet
Fix from $1,950 2000-04-14