PT-2023-23974 · Blackberry · Qnx Sdp
Published
2023-11-14
·
Updated
2025-09-09
·
CVE-2023-32701
CVSS v3.1
7.1
High
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
QNX SDP versions 6.6, 7.0, and 7.1
Description
The issue is related to improper input validation in the networking stack, which could allow an attacker to potentially cause information disclosure or a denial-of-service condition.
Recommendations
For QNX SDP version 6.6, update to a version that includes the fix for the improper input validation issue.
For QNX SDP version 7.0, update to a version that includes the fix for the improper input validation issue.
For QNX SDP version 7.1, update to a version that includes the fix for the improper input validation issue.
As a temporary workaround, consider restricting access to the networking stack to minimize the risk of exploitation.
Fix
DoS
RCE
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Qnx Sdp