CVE-2005-4082
Published Dec 8, 2005The dhcp.client program for QNX 4.25 vmware is setuid, possibly by default, which allows local users to modify the NIC configuration and conduct other attacks.
Vendor/product archive
3 CVEs tagged to qnx / qnx — 0 Critical, 1 High, 1 Medium, 1 Low, 0 Unrated.
The dhcp.client program for QNX 4.25 vmware is setuid, possibly by default, which allows local users to modify the NIC configuration and conduct other attacks.
QNX 2.4 allows a local user to read arbitrary files by directly accessing the mount point for the FAT disk partition, e.g. /fs-dos.
The crypt function in QNX uses weak encryption, which allows local users to decrypt passwords.