CVE-2005-4082: Medium severity qnx qnx vulnerability
Published Dec 8, 2005
·Updated
The dhcp.client program for QNX 4.25 vmware is setuid, possibly by default, which allows local users to modify the NIC configuration and conduct other attacks.
Affected Software
1 affected component
QNX QNX=4.25
Event History
Dec 8, 2005
CVE Published
01:03 AM
CVE Published
via MITRE·06:00 AM
Data Sourced
via MITRE·06:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-4082?
CVE-2005-4082 is considered a high severity vulnerability due to its potential for local users to exploit setuid permissions.
2
How do I fix CVE-2005-4082?
To fix CVE-2005-4082, remove the setuid bit from the dhcp.client program or apply updates from QNX that address this issue.
3
Who is affected by CVE-2005-4082?
CVE-2005-4082 affects users of QNX version 4.25 where the dhcp.client program is setuid.
4
What types of attacks can be conducted due to CVE-2005-4082?
Due to CVE-2005-4082, local users can modify network interface configurations and potentially escalate privileges.
5
Is CVE-2005-4082 still a concern in modern systems?
CVE-2005-4082 primarily impacts legacy systems running QNX 4.25 and is less of a concern in contemporary environments.