BlackBerry QNX SDP
cpe:2.3:a:blackberry:qnx_software_development_platform:*:*:*:*:*:*:*
- 8.0
- 7.1
- 7.0
A NULL pointer dereference vulnerability has been identified in the PCX image codec of QNX Software Development Platform (SDP) versions 8.0, 7.1, and 7.0. This vulnerability could allow an unauthenticated attacker to induce a denial-of-service condition in the process utilizing the image codec by forcing the system to parse a maliciously crafted PCX format image file.
Exploitation of this vulnerability leads to a denial-of-service condition in the context of the process using the image codec.
QNX has released updates for the affected PCX image codec in QNX SDP 8.0, 7.1, and 7.0. These updates are available through the QNX Software Center. QNX recommends that all affected customers install these updates as soon as possible.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.