← Voltar para CVEs
CVE-2017-3892
LOW3.8
Descricao
In BlackBerry QNX Software Development Platform (SDP) 6.6.0, an information disclosure vulnerability in the default configuration of the QNX SDP could allow an attacker to gain information relating to memory layout that could be used in a blended attack by executing commands targeting procfs resources.
Detalhes CVE
Pontuacao CVSS v3.13.8
SeveridadeLOW
Vetor CVSSCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:L/I:N/A:N
Vetor de ataqueLOCAL
ComplexidadeLOW
Privilegios necessariosLOW
Interacao do usuarioNONE
Publicado11/14/2017
Ultima modificacao8/26/2025
Fontenvd
Avistamentos honeypot0
Produtos afetados
blackberry:qnx_software_development_platform
Fraquezas (CWE)
CWE-200CWE-200
Referencias
http://support.blackberry.com/kb/articleDetail?articleNumber=000046674(secure@blackberry.com)
http://support.blackberry.com/kb/articleDetail?articleNumber=000046674(af854a3a-2127-422b-91ae-364da2661108)
Correlacoes IOC
Sem correlacoes registradas
This product uses data from the NVD API but is not endorsed or certified by the NVD.