CVE-2017-3893: Incomplete vulnerability mitigations
In BlackBerry QNX Software Development Platform (SDP) 6.6.0, the default configuration of the QNX SDP system did not in all circumstances prevent attackers from modifying the GOT or PLT tables with buffer overflow attacks.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2017-3893?
CVE-2017-3893 is a vulnerability in BlackBerry QNX Software Development Platform (SDP) 6.6.0 that allows attackers to modify the GOT or PLT tables with buffer overflow attacks.
What is the severity of CVE-2017-3893?
The severity of CVE-2017-3893 is high with a CVSS score of 7.5.
How does CVE-2017-3893 affect BlackBerry QNX Software Development Platform?
CVE-2017-3893 affects BlackBerry QNX Software Development Platform 6.6.0 by not preventing attackers from modifying the GOT or PLT tables with buffer overflow attacks.
How can I fix CVE-2017-3893?
To fix CVE-2017-3893, it is recommended to apply the necessary security patches or updates provided by BlackBerry QNX.
Where can I find more information about CVE-2017-3893?
You can find more information about CVE-2017-3893 on the BlackBerry support website at http://support.blackberry.com/kb/articleDetail?articleNumber=000046674.