Back to Database
Status published
High
CVE-2005-1528
Untrusted search path vulnerability in the crttrap command in QNX...
Vulnerability Description
Untrusted search path vulnerability in the crttrap command in QNX Neutrino RTOS 6.2.1 allows local users to load arbitrary libraries via a LD_LIBRARY_PATH environment variable that references a malicious library.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2005-1528
Credits & Attribution
No credits recorded in the NVD database.
References
More from qnx
View All →CVE-2011-4060
The runtime linker in QNX Neutrino RTOS 6.5.0 before Service...
Low
3.3
CVE-2006-0623
QNX Neutrino RTOS 6.3.0 ships /etc/rc.d/rc.local with world-writable permissions, which...
High
7.2
CVE-2006-0622
QNX Neutrino RTOS 6.3.0 allows local users to cause a...
Medium
4.9
CVE-2006-0621
Multiple buffer overflows in QNX Neutrino RTOS 6.2.0 allow local...
High
7.2
CVE-2006-0620
Race condition in phfont in QNX Neutrino RTOS 6.2.1 allows...
Medium
6.2
Affected Vendor
Affected Software
rtos
Vulnerable Versions:
6.2.1
Timeline
Official Publish:
February 9th, 2006
Last Modified:
August 7th, 2024
Added to House:
July 18th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.