4.6
CVSSv2

CVE-2002-0793

Published: 12/08/2002 Updated: 26/01/2024
CVSS v2 Base Score: 4.6 | Impact Score: 6.4 | Exploitability Score: 3.9
CVSS v3 Base Score: 5.5 | Impact Score: 3.6 | Exploitability Score: 1.8
VMScore: 475
Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Hard link and possibly symbolic link following vulnerabilities in QNX RTOS 4.25 (aka QNX4) allow local users to overwrite arbitrary files via (1) the -f argument to the monitor utility, (2) the -d argument to dumper, (3) the -c argument to crttrap, or (4) using the Watcom sample utility.

Vulnerable Product Search on Vulmon Subscribe to Product

blackberry qnx neutrino real-time operating system 4.25

Exploits

source: wwwsecurityfocuscom/bid/4901/info The QNX RTOS crttrap binary includes a command-line option for specifying a configuration file crttrap is installed setuid by default crttrap Local attackers may specify an arbitrary system file in place of the configuration file and crttrap will disclose the contents of the arbitrary file cr ...
source: wwwsecurityfocuscom/bid/4904/info When creating memory dump files, the QNX RTOS debugging utility 'dumper' follows symbolic links It also sets ownership of the file to the userid of the terminated process It is possible for malicious local attackers to exploit this vulnerability to overwrite and gain ownership of arbitrary files ...
source: wwwsecurityfocuscom/bid/4902/info The QNX RTOS monitor utility is prone to an issue which may allow local attackers to modify arbitrary system files (such as /etc/passwd) monitor is installed setuid root by default The monitor -f command line option may be used by a local attacker to cause an arbitrary system file to be overwri ...