First published: Tue Jan 14 2025(Updated: )
NULL pointer dereference in the PCX image codec in QNX SDP versions 8.0, 7.1 and 7.0 could allow an unauthenticated attacker to cause a denial-of-service condition in the context of the process using the image codec.
Credit: secure@blackberry.com
Affected Software | Affected Version | How to fix |
---|---|---|
BlackBerry QNX Software Development Platform | >=7.0<=8.0 | |
BlackBerry QNX Software Development Platform | =7.0 | |
BlackBerry QNX Software Development Platform | =7.1 | |
BlackBerry QNX Software Development Platform | =8.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-48857 has a high severity rating due to its potential to cause a denial-of-service condition.
To fix CVE-2024-48857, update to the latest version of the QNX Software Development Platform that addresses this vulnerability.
CVE-2024-48857 affects users of BlackBerry QNX Software Development Platform versions 7.0, 7.1, and 8.0.
CVE-2024-48857 can be exploited by unauthenticated attackers to execute denial-of-service attacks.
CVE-2024-48857 was disclosed in 2024, highlighting its impact on the PCX image codec in QNX.