Searching realtime software vulnerabilities


The (1) phrafx and (2) phgrafx-startup programs


The (1) phrafx and (2) phgrafx-startup programs in QNX realtime operating system (RTOS) 4.25 and 6.1.0 do not properly drop privileges before executing the system command, which allows local users to execute arbitrary commands by modifying the PATH environment variable to reference a malicious crttrap program.


Multiple buffer overflows in realtime operating


Multiple buffer overflows in realtime operating system (RTOS) 6.1.0 allows local users to execute arbitrary code via (1) a long ABLANG environment variable in phlocale or (2) a long -u option to pkg-installer.


ptrace in the QNX realtime operating system (RT


ptrace in the QNX realtime operating system (RTOS) 4.25 and 6.1.0 allows programs to attach to privileged processes, which could allow local users to execute arbitrary code by modifying running processes.


Cisco CallManager (CCM) 3.2 and earlier, 3.3 be


Cisco CallManager (CCM) 3.2 and earlier, 3.3 before 3.3(5), 4.0 before 4.0(2a)SR2b, and 4.1 4.1 before 4.1(3)SR1 does not quickly time out Realtime Information Server Data Collection (RISDC) sockets, which results in a "resource leak" that allows remote attackers to cause a denial of service (memory and connection consumption) in RisDC.exe.


Unspecified vulnerability in the built-in admin


Unspecified vulnerability in the built-in admin console in Ignite Realtime Openfire 3.3.0 and earlier (formerly Wildfire) allows remote attackers to gain privileges via unspecified vectors to admin console port 9090.


Software vulnerabilities results 1 to 6 of 6     
Page: 1