Known Vulnerabilities for products from Qnx

Listed below are 20 of the newest known vulnerabilities associated with the vendor "Qnx".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2011-4060 json The runtime linker in QNX Neutrino RTOS 6.5.0 before Service Pack 1 does not properly clear the LD_DEBUG_OUTPUT and LD_DEBUG ... Not Provided 2011-10-18 2026-04-29
CVE-2006-0623 json QNX Neutrino RTOS 6.3.0 ships /etc/rc.d/rc.local with world-writable permissions, which allows local users to modify the file... Not Provided 2006-02-09 2025-04-03
CVE-2006-0622 json QNX Neutrino RTOS 6.3.0 allows local users to cause a denial of service (hang) by supplying a "break *0xb032d59f" command to ... Not Provided 2006-02-09 2025-04-03
CVE-2006-0621 json Multiple buffer overflows in QNX Neutrino RTOS 6.2.0 allow local users to execute arbitrary code via a long first argument to... Not Provided 2006-02-09 2025-04-03
CVE-2006-0620 json Race condition in phfont in QNX Neutrino RTOS 6.2.1 allows local users to execute arbitrary code via unspecified manipulation... Not Provided 2006-02-09 2025-04-03
CVE-2006-0619 json Multiple stack-based buffer overflows in QNX Neutrino RTOS 6.3.0 allow local users to execute arbitrary code via long (1) ABL... Not Provided 2006-02-09 2025-04-03
CVE-2006-0618 json Format string vulnerability in fontsleuth in QNX Neutrino RTOS 6.3.0 allows local users to execute arbitrary code via format ... Not Provided 2006-02-09 2025-04-03
CVE-2005-4082 json The dhcp.client program for QNX 4.25 vmware is setuid, possibly by default, which allows local users to modify the NIC config... Not Provided 2005-12-08 2025-04-03
CVE-2005-3928 json Buffer overflow in phgrafx in QNX 6.2.1 and 6.3.0 allows local users to execute arbitrary code via a long command line argume... Not Provided 2005-11-30 2025-04-03
CVE-2005-2725 json The inputtrap utility in QNX RTOS 6.1.0, 6.3, and possibly earlier versions does not properly check permissions when the -t f... Not Provided 2005-08-30 2025-04-03
CVE-2005-1528 json Untrusted search path vulnerability in the crttrap command in QNX Neutrino RTOS 6.2.1 allows local users to load arbitrary li... Not Provided 2005-12-31 2025-04-03
CVE-2004-1683 json A race condition in crrtrap for QNX RTP 6.1 allows local users to gain privileges by modifying the PATH environment variable ... Not Provided 2004-09-13 2025-04-03
CVE-2004-1682 json Format string vulnerability in QNX 6.1 FTP client allows remote authenticated users to gain group bin privileges via format s... Not Provided 2004-08-15 2025-04-03
CVE-2004-1681 json Multiple buffer overflows in (1) phrelay-cfg, (2) phlocale, (3) pkg-installer, or (4) input-cfg in QNX Photon microGUI for QN... Not Provided 2004-08-26 2025-04-03
CVE-2004-1391 json Untrusted execution path vulnerability in the PPPoE daemon (PPPoEd) in QNX RTP 6.1 allows local users to execute arbitrary pr... Not Provided 2004-12-31 2025-04-03
CVE-2004-1390 json Multiple buffer overflows in the PPPoE daemon (PPPoEd) in QNX RTP 6.1 allow remote attackers to execute arbitrary code via a ... Not Provided 2004-12-31 2025-04-03
CVE-2002-2409 json Photon microGUI in QNX Neutrino realtime operating system (RTOS) 6.1.0 and 6.2.0 allows attackers to read user clipboard info... Not Provided 2002-12-31 2025-04-03
CVE-2002-2407 json Certain patches for QNX Neutrino realtime operating system (RTOS) 6.2.0 set insecure permissions for the files (1) /sbin/io-a... Not Provided 2002-12-31 2025-04-03
CVE-2002-2120 json Multiple buffer overflows in QNX RTOS 4.25 may allow attackers to execute arbitrary code via long filename arguments to (1) W... Not Provided 2002-12-31 2025-04-03
CVE-2002-2042 json ptrace in the QNX realtime operating system (RTOS) 4.25 and 6.1.0 allows programs to attach to privileged processes, which co... Not Provided 2002-12-31 2025-04-03

© CVE.report 2026

Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.

CVE, CWE, and OVAL are registred trademarks of The MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. This site includes MITRE data granted under the following license.

Free CVE JSON API cve.report/api

CVE.report and Source URL Uptime Status status.cve.report