Record summary

CVE-2014-2534 has a selected CVSS score of 4.9; EIP currently links 1 catalogued exploit.

Description

/sbin/pppoectl in BlackBerry QNX Neutrino RTOS 6.4.x and 6.5.x allows local users to obtain sensitive information by reading "bad parameter" lines in error messages, as demonstrated by reading the root password hash in /etc/shadow.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
1

Proofs of concept

1

Catalogued exploits

ExploitDBQNX 6.4.x/6.5.x pppoectl - Information DisclosureExploitDB exploitby cenobyteNot analyzed1 file
ExploitDB

PoC details

References

6