Vulnerabilities > CVE-2002-2039 - Unspecified vulnerability in QNX Rtos 4.25/6.1.0

047910
CVSS 2.1 - LOW
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
NONE
Availability impact
NONE
local
low complexity
qnx
exploit available

Summary

/bin/su in QNX realtime operating system (RTOS) 4.25 and 6.1.0 allows local users to obtain sensitive information from core dump files by sending the SIGSERV (invalid memory reference) signal.

Vulnerable Configurations

Part Description Count
Application
Qnx
2

Exploit-Db

descriptionQNX RTOS 4.25/6.1 su Password Hash Disclosure Vulnerability. CVE-2002-2039. Local exploit for linux platform
idEDB-ID:21502
last seen2016-02-02
modified2002-06-03
published2002-06-03
reporterbadc0ded
sourcehttps://www.exploit-db.com/download/21502/
titleQNX RTOS 4.25/6.1 su Password Hash Disclosure Vulnerability