Out-of-bounds write in the PCX image codec in QNX SDP versions 8.0, 7.1 and 7.0 could allow an unauthenticated attacker to cause a denial-of-service condition or execute code in the context of the process using the image codec.
The vulnerability consists of improper input data handling by the PCX image codec — a specially crafted PCX file can cause data to be written outside the allocated memory buffer (out-of-bounds write, CWE-787). An attacker without any privileges can deliver a malicious image file to an application using the vulnerable codec. Depending on the process execution context, the exploit can lead to arbitrary code execution or abnormal process termination.
An attacker can execute arbitrary code in the context of a process using the vulnerable PCX image codec, which may result in taking control of a system component, or trigger a denial of service (DoS) condition causing the process to crash.
Patches available from the vendor should be applied according to the references (https://support.blackberry.com/pkb/s/article/140646). Until the fix is deployed, it is recommended to restrict processing of untrusted PCX image files by applications based on QNX SDP and minimize exposure of vulnerable components to untrusted input data.
BlackBerry QNX Software Development Platform (SDP) in versions 8.0, 7.1, and 7.0.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HBlackberry Qnx Software Development Platform
APPBlackberry7.07.18.0
Related vulnerabilities
Out-of-bounds write w kodeku PCX w BlackBerry QNX SDP — RCE i DoS
Podatność improper input validation w SGI Image Codec QNX SDP
RCE w kodeku obrazów BMP w BlackBerry QNX SDP
Integer overflow w calloc() w BlackBerry QNX — RCE i DoS
RCE i ujawnienie informacji w serwerze slinger — BlackBerry QNX SDP