Back to Database
Status published
High
CVE-2006-0623
QNX Neutrino RTOS 6.3.0 ships /etc/rc.d/rc.local with world-writable permissions, which...
Vulnerability Description
QNX Neutrino RTOS 6.3.0 ships /etc/rc.d/rc.local with world-writable permissions, which allows local users to modify the file and execute arbitrary code at system startup.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2006-0623
Credits & Attribution
No credits recorded in the NVD database.
References
- http://www.idefense.com/intelligence/vulnerabilities/display.php?id=387
- https://exchange.xforce.ibmcloud.com/vulnerabilities/24552
- http://www.vupen.com/english/advisories/2006/0474
- http://secunia.com/advisories/18750
- http://securitytracker.com/id?1015598
- http://www.osvdb.org/22958
- http://www.securityfocus.com/bid/16539
More from qnx
View All →CVE-2011-4060
The runtime linker in QNX Neutrino RTOS 6.5.0 before Service...
Low
3.3
CVE-2006-0622
QNX Neutrino RTOS 6.3.0 allows local users to cause a...
Medium
4.9
CVE-2006-0621
Multiple buffer overflows in QNX Neutrino RTOS 6.2.0 allow local...
High
7.2
CVE-2006-0620
Race condition in phfont in QNX Neutrino RTOS 6.2.1 allows...
Medium
6.2
CVE-2006-0619
Multiple stack-based buffer overflows in QNX Neutrino RTOS 6.3.0 allow...
Medium
4.6
Affected Vendor
Affected Software
rtos
Vulnerable Versions:
6.3.0
Timeline
Official Publish:
February 9th, 2006
Last Modified:
August 7th, 2024
Added to House:
July 18th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.