7.2
CVSSv2

CVE-2002-2042

Published: 31/12/2002 Updated: 05/09/2008
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
VMScore: 725
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

ptrace in the QNX realtime operating system (RTOS) 4.25 and 6.1.0 allows programs to attach to privileged processes, which could allow local users to execute arbitrary code by modifying running processes.

Vulnerable Product Search on Vulmon Subscribe to Product

qnx rtos 4.25

qnx rtos 6.1.0

Exploits

source: wwwsecurityfocuscom/bid/4919/info The QNX implementation of 'ptrace()' is reportedly insecure An unprivileged process may attach to a setuid program without restriction Since the attaching process may view or edit memory, an attacker may exploit this issue to escalate privileges This issue affects QNX RTOS 6 prior to 640 ...