Vulnerability in Networking Stack Impacts QNX Software Development Platform (SDP)
21Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackcvss 7.1epss 0.2%
exploitation probability
0.2%top 85% of all CVEs
observed exploitation
nono source reports it
In short
A flaw in QNX's networking system fails to properly check incoming network data, allowing attackers to leak sensitive information or crash the system by sending specially crafted network packets.
Technical detail
An improper input validation vulnerability in the networking stack of QNX SDP 6.6, 7.0, and 7.1 allows remote attackers to trigger information disclosure or denial-of-service conditions through malformed network packets; exploitation requires network access to the affected system.
Summary generated and translated by AI from the official description.
Improper Input Validation in the Networking Stack of QNX SDP version(s) 6.6, 7.0, and 7.1 could allow an attacker to potentially cause Information Disclosure or a Denial-of-Service condition.
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H
Affected products
BlackBerry · QNX Software Development Platform (SDP)