CVE-2002-0793: Medium severity BlackBerry Qnx Neutrino Real-time Operating System vulnerability
Hard link and possibly symbolic link following vulnerabilities in QNX RTOS 4.25 (aka QNX4) allow local users to overwrite arbitrary files via (1) the -f argument to the monitor utility, (2) the -d argument to dumper, (3) the -c argument to crttrap, or (4) using the Watcom sample utility.
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2002-0793?
CVE-2002-0793 is considered a moderate severity vulnerability that allows local users to overwrite arbitrary files.
How do local users exploit CVE-2002-0793?
Local users can exploit CVE-2002-0793 by using specific command arguments in utilities such as monitor, dumper, and crttrap.
What systems are affected by CVE-2002-0793?
CVE-2002-0793 affects QNX RTOS 4.25 and Blackberry QNX Neutrino Real-time Operating System version 4.25.
What are the potential impacts of CVE-2002-0793?
The potential impacts of CVE-2002-0793 include unauthorized file modification and loss of system integrity.
How can I mitigate CVE-2002-0793?
To mitigate CVE-2002-0793, ensure users are restricted from accessing vulnerable command utilities and apply any available patches.