CVE-2021-32024
CRITICALBlackberry Qnx Software Development Platform - Remote Code Execution
Title source: ruleDescription
A remote code execution vulnerability in the BMP image codec of BlackBerry QNX SDP version(s) 6.4 to 7.1 could allow an attacker to potentially execute code in the context of the affected process.
Scores
CVSS v3
9.8
EPSS
0.0265
EPSS Percentile
85.5%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Classification
CWE
CWE-1287
Status
published
Affected Products (1)
blackberry/qnx_software_development_platform
< 7.1
Timeline
Published
Dec 13, 2021
Tracked Since
Feb 18, 2026