We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2002-2407



Assignermitre
Reserved2007-11-01
Published2007-11-01
Updated2024-09-17

Description

Certain patches for QNX Neutrino realtime operating system (RTOS) 6.2.0 set insecure permissions for the files (1) /sbin/io-audio by OS Update Patch A, (2) /bin/shutdown, (3) /sbin/fs-pkg, and (4) phshutdown by QNX experimental patches, (5) cpim, (6) vpim, (7) phrelaycfg, and (8) columns, (9) othello, (10) peg, (11) solitaire, and (12) vpoker in the games pack 2.0.3, which allows local users to gain privileges by modifying the files before permissions are changed.

References

http://archives.neohapsis.com/archives/bugtraq/2002-11/0255.html (20021119 Multiple incorrect permissions in QNX.) mailing-list

http://www.securityfocus.com/bid/6206 (6206) vdb-entry

http://www.iss.net/security_center/static/10656.php (qnx-rtos-improper-permissions(10656)) vdb-entry

cve.org CVE-2002-2407

nvd.nist.gov CVE-2002-2407

Download JSON

Share this page
https://cve.threatint.com
Subscribe to our newsletter to learn more about our work.