📦 Qnx Software Development Platform

by Blackberry

🔍 What is Qnx Software Development Platform?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-2474

CRITICAL CVSS 9.8 Jun 10, 2025

CVE-2025-2474 is a critical out-of-bounds write vulnerability in the PCX image codec in QNX SDP that allows unauthenticated attackers to cause denial-of-service or execute arbitrary code. This affects...

CVE-2024-48856

CRITICAL CVSS 9.8 Jan 14, 2025

This critical vulnerability allows unauthenticated attackers to exploit an out-of-bounds write in QNX's PCX image codec, potentially leading to remote code execution or denial-of-service. It affects Q...

CVE-2024-35213

CRITICAL CVSS 9.0 Jun 11, 2024

An improper input validation vulnerability in the SGI Image Codec of QNX SDP allows attackers to cause denial-of-service or execute arbitrary code by processing malicious SGI image files. This affects...

CVE-2021-32024

CRITICAL CVSS 9.8 Dec 13, 2021

This critical vulnerability allows remote attackers to execute arbitrary code by sending specially crafted BMP images to BlackBerry QNX SDP systems. Attackers can potentially take full control of affe...

CVE-2021-22156

CRITICAL CVSS 9.0 Aug 17, 2021

An integer overflow vulnerability in the calloc() function of QNX runtime libraries allows attackers to cause denial of service or execute arbitrary code. Affects BlackBerry QNX SDP 6.5.0SP1 and earli...

CVE-2020-6932

CRITICAL CVSS 10.0 Aug 12, 2020

This vulnerability in the BlackBerry QNX slinger web server allows attackers to read arbitrary files and execute arbitrary code with web server privileges. It affects QNX Software Development Platform...

CVE-2024-48858

HIGH CVSS 7.5 Jan 14, 2025

An improper input validation vulnerability in the PCX image codec in QNX SDP allows unauthenticated attackers to cause denial-of-service conditions. This affects processes using the image codec in QNX...

CVE-2023-32701

HIGH CVSS 7.1 Nov 14, 2023

This vulnerability in QNX SDP's networking stack allows attackers to send specially crafted network packets that bypass input validation checks. Successful exploitation could lead to information discl...

CVE-2021-32025

HIGH CVSS 8.1 Mar 10, 2022

This CVE-2021-32025 is an elevation of privilege vulnerability in the QNX Neutrino Kernel that allows attackers to potentially access sensitive data, modify system behavior, or cause permanent system ...

CVE-2024-48854

MEDIUM CVSS 5.3 Jan 14, 2025

An off-by-one error in the TIFF image codec in QNX SDP versions 8.0, 7.1, and 7.0 could allow an unauthenticated attacker to cause information disclosure in the context of the process using the image ...