Back to Database
Status published
Critical
CVE-2008-3024
Stack-based buffer overflow in phgrafx in QNX Momentics (aka RTOS)...
Vulnerability Description
Stack-based buffer overflow in phgrafx in QNX Momentics (aka RTOS) 6.3.2 and earlier allows local users to gain privileges via a long .pal filename in palette/.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2008-3024
Credits & Attribution
No credits recorded in the NVD database.
References
- http://www.scanit.net/rd/advisories/adv01
- http://www.securitytracker.com/id?1020411
- http://www.securityfocus.com/archive/1/493816/100/0/threaded
- https://exchange.xforce.ibmcloud.com/vulnerabilities/43542
- http://www.vupen.com/english/advisories/2008/1996/references
- http://secunia.com/advisories/30808
- http://www.securityfocus.com/bid/30024
- http://securityreason.com/securityalert/3974
More from blackberry
View All →CVE-2021-22155
An Authentication Bypass vulnerability in the SAML Authentication component of...
High
8.8
CVE-2021-22154
An Information Disclosure vulnerability in the Management Console component of...
Medium
5.3
CVE-2021-22153
A Remote Code Execution vulnerability in the Management Console component...
High
7.3
CVE-2021-22152
A Denial of Service due to Improper Input Validation vulnerability...
Medium
5.5
CVE-2016-3126
Cross-site scripting (XSS) vulnerability in the Management Console in BlackBerry...
Medium
6.1
Affected Vendor
blackberry
View all reports →Affected Software
qnx momentics
Vulnerable Versions:
0
Timeline
Official Publish:
July 7th, 2008
Last Modified:
August 7th, 2024
Added to House:
July 18th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.