Vulnerability Note VU#879386

Multiple buffer overflow vulnerabilities in QNX

Original Release date: 11 Oct 2002 | Last revised: 05 Aug 2003

Overview

Multiple buffer overflow vulnerabilities have been reported in QnX.

Description

QnX is an RTOS (Realtime Operating System). QnX is used in many different devices and industries, including, but not limited to,

  • Routers
  • Manufacturing and Processing
  • Medical Equipment
  • Automotive and Transportation
  • Military and Aerospace
  • Consumer Electronics
  • Industry Automation and Control

According to this vulnerability report, the following commands contain buffer overflow vulnerabilities:

/bin/du
/bin/find
/bin/lex
/bin/mkdir
/bin/rm
/bin/serserv
/bin/tcpserv
/bin/termdef
/bin/time
/bin/unzip
/bin/use
/bin/wcc
/bin/wcc386
/bin/wd
/bin/wdisasm
/bin/which
/bin/wlib
/bin/wlink
/bin/wpp
/bin/wpp386
/bin/wprof
/bin/write
/bin/wstrip

Impact

A local attacker may be able to execute arbitrary code.

Solution

The CERT/CC is currently unaware of a practical solution to this problem.

Systems Affected (Learn More)

VendorStatusDate NotifiedDate Updated
AlcatelNot Affected12 Jun 200224 Sep 2002
CNTNot Affected-17 Jun 2002
Convedia CorporationNot Affected13 Jun 200214 Jun 2002
Cray Inc.Not Affected12 Jun 200214 Jun 2002
Cyclades CorporationNot Affected13 Jun 200225 Jun 2002
IBMNot Affected12 Jun 200224 Sep 2002
Inktomi CorporationNot Affected-14 Jun 2002
Intrusion Inc.Not Affected13 Jun 200219 Jun 2002
Ishoni NetworksNot Affected13 Jun 200217 Jun 2002
Juniper NetworksNot Affected12 Jun 200214 Jun 2002
Lotus SoftwareNot Affected12 Jun 200214 Jun 2002
NEC CorporationNot Affected12 Jun 200221 Nov 2002
Network ApplianceNot Affected12 Jun 200213 Jun 2002
Network Computing TechnologiesNot Affected-14 Jun 2002
Nortel NetworksNot Affected12 Jun 200218 Jul 2002
If you are a vendor and your product is affected, let us know.View More »

CVSS Metrics (Learn More)

Group Score Vector
Base N/A N/A
Temporal N/A N/A
Environmental N/A N/A

References

Credit

Thanks to Egor Egorov for reporting this vulnerability.

This document was written by Ian A Finlay.

Other Information

  • CVE IDs: Unknown
  • Date Public: 12 Jun 2002
  • Date First Published: 11 Oct 2002
  • Date Last Updated: 05 Aug 2003
  • Severity Metric: 17.25
  • Document Revision: 27

Feedback

If you have feedback, comments, or additional information about this vulnerability, please send us email.