First published: Wed Mar 09 2022(Updated: )
An elevation of privilege vulnerability in the QNX Neutrino Kernel of affected versions of QNX Software Development Platform version(s) 6.4.0 to 7.0, QNX Momentics all 6.3.x versions, QNX OS for Safety versions 1.0.0 to 1.0.2, QNX OS for Safety versions 2.0.0 to 2.0.1, QNX for Medical versions 1.0.0 to 1.1.1, and QNX OS for Medical version 2.0.0 could allow an attacker to potentially access data, modify behavior, or permanently crash the system.
Credit: secure@blackberry.com
Affected Software | Affected Version | How to fix |
---|---|---|
Blackberry Qnx Momentics | =6.3.0 | |
Blackberry Qnx Momentics | =6.3.2 | |
BlackBerry QNX Software Development Platform | >=6.4.0<=7.0 | |
Blackberry Qnx Os For Medical | >=1.0<1.1.2 | |
Blackberry Qnx Os For Medical | =2.0.0 | |
Blackberry Qnx Os For Safety | >=1.0.0<1.0.3 | |
Blackberry Qnx Os For Safety | >=2.0.0<2.0.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-32025 is an elevation of privilege vulnerability in the QNX Neutrino Kernel of affected versions of QNX Software Development Platform.
Affected versions include QNX Software Development Platform versions 6.4.0 to 7.0, QNX Momentics all 6.3.x versions, QNX OS for Safety versions 1.0.0 to 1.0.2, QNX OS for Safety versions 2.0.0 to 2.0.1, and QNX for Medical versions 1.0.0 to 1.1.2.
The severity of CVE-2021-32025 is rated as high, with a severity value of 7.8.
Blackberry recommends updating to the latest available patches and versions of the affected software to mitigate CVE-2021-32025.
You can find more information about CVE-2021-32025 at the following URL: [http://support.blackberry.com/kb/articleDetail?articleNumber=000090868](http://support.blackberry.com/kb/articleDetail?articleNumber=000090868)