CVE-2005-2725: Low severity qnx rtos vulnerability
Published Aug 29, 2005
·Updated
The inputtrap utility in QNX RTOS 6.1.0, 6.3, and possibly earlier versions does not properly check permissions when the -t flag is specified, which allows local users to read arbitrary files.
Affected Software
2 affected components
QNX RTOS=6.3.0
QNX RTOS=6.1.0
Event History
Aug 29, 2005
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-2725?
CVE-2005-2725 is considered a high severity vulnerability due to improper permission checks allowing unauthorized file access.
2
How do I fix CVE-2005-2725?
To fix CVE-2005-2725, update your QNX RTOS to the latest version where this vulnerability is addressed.
3
Who is affected by CVE-2005-2725?
CVE-2005-2725 affects users of QNX RTOS 6.1.0, 6.3.0, and possibly earlier versions.
4
What does CVE-2005-2725 exploit?
CVE-2005-2725 exploits a flaw in the inputtrap utility that fails to validate permissions correctly when the -t flag is used.
5
Can local users exploit CVE-2005-2725?
Yes, local users can exploit CVE-2005-2725 to read arbitrary files on the system.