17781Third-party advisory
http://secunia.com/advisories/17781 CVE-2005-3928
QNX RTOS 6.3.0 (x86) - 'phgrafx' Local Buffer Overflow
Record summary
CVE-2005-3928 has a selected CVSS score of 4.6; EIP currently links 1 catalogued exploit.
Description
Buffer overflow in phgrafx in QNX 6.2.1 and 6.3.0 allows local users to execute arbitrary code via a long command line argument.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBQNX RTOS 6.3.0 (x86) - 'phgrafx' Local Buffer OverflowExploitDB exploitby p. minerviniNot analyzed1 file
References
81015599vdb entry
http://securitytracker.com/id?1015599 20060207 QNX Neutrino RTOS phgrafx Command Buffer OverflowThird-party advisory
http://www.idefense.com/intelligence/vulnerabilities/display.php?id=384 20051129 possible privilege escalation on QNX Neutrino 6.3.0mailing list
http://www.securityfocus.com/archive/1/418105/100/0/threaded 15619vdb entry
http://www.securityfocus.com/bid/15619 16539vdb entry
http://www.securityfocus.com/bid/16539 ADV-2005-2669vdb entry
http://www.vupen.com/english/advisories/2005/2669 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2005-3928