QNX RTOS int10 Buffer Overflow Vulnerability
BID:4906
Info
QNX RTOS int10 Buffer Overflow Vulnerability
| Bugtraq ID: | 4906 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | No |
| Local: | Yes |
| Published: | May 31 2002 12:00AM |
| Updated: | May 31 2002 12:00AM |
| Credit: | Credited to Simon Ouellette <[email protected]>. |
| Vulnerable: |
QNX RTOS 4.25 |
| Not Vulnerable: | |
Discussion
QNX RTOS int10 Buffer Overflow Vulnerability
It has been reported that the QNX RTOS 'int10' utility exhibits behaviour suggesting a buffer overflow condition. When argumented with excessively long filename parameters, 'int10' reportedly crashes due to an access violation. This often occurs when an overrun condition corrupts a pointer, such as a function return address. If the crash is due to a buffer overrun, the condition may be exploited by local attackers to gain root privileges.
It has been reported that the QNX RTOS 'int10' utility exhibits behaviour suggesting a buffer overflow condition. When argumented with excessively long filename parameters, 'int10' reportedly crashes due to an access violation. This often occurs when an overrun condition corrupts a pointer, such as a function return address. If the crash is due to a buffer overrun, the condition may be exploited by local attackers to gain root privileges.
Exploit / POC
QNX RTOS int10 Buffer Overflow Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.