VulnerabilityModified
CVE-2002-2120
Multiple buffer overflows in QNX RTOS 4.25 may allow attackers to execute arbitrary code via long filename arguments to (1) Watcom or (2) int10.
MEDIUM 4.6EPSS 0.63%
Does this matter?
Lower severity and a low EPSS score (0.63%). Track it; it rarely justifies an emergency change on its own.
Description
Multiple buffer overflows in QNX RTOS 4.25 may allow attackers to execute arbitrary code via long filename arguments to (1) Watcom or (2) int10.
- CVSS 2.0
- 4.6 MEDIUMAV:L/AC:L/Au:N/C:P/I:P/A:P
- EPSS
- 0.63% probability · 48th percentile
- CISA KEV
- Not listed
- Affected
- qnx/rtos
- Source
- cve@mitre.org
References
- http://archives.neohapsis.com/archives/bugtraq/2002-05/0292.htmlExploit, Vendor Advisory
- http://archives.neohapsis.com/archives/bugtraq/2002-05/0293.html
- http://www.iss.net/security_center/static/9235.php
- http://www.iss.net/security_center/static/9236.php
- http://www.securityfocus.com/bid/4905
- http://www.securityfocus.com/bid/4906
- http://archives.neohapsis.com/archives/bugtraq/2002-05/0292.htmlExploit, Vendor Advisory
- http://archives.neohapsis.com/archives/bugtraq/2002-05/0293.html
- http://www.iss.net/security_center/static/9235.php
- http://www.iss.net/security_center/static/9236.php
- http://www.securityfocus.com/bid/4905
- http://www.securityfocus.com/bid/4906
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.