Back to Database
Status published
Low
CVE-2017-3893
Incomplete vulnerability mitigations
Vulnerability Description
In BlackBerry QNX Software Development Platform (SDP) 6.6.0, the default configuration of the QNX SDP system did not in all circumstances prevent attackers from modifying the GOT or PLT tables with buffer overflow attacks.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2017-3893
Credits & Attribution
No credits recorded in the NVD database.
More from BlackBerry
View All →CVE-2025-2474
Vulnerability in PCX Image Codec Impacts QNX Software Development Platform
Critical
9.8
CVE-2025-12766
Insecure Direct Object Reference (IDOR) vulnerability in the Management Console of affected versions of BlackBerry AtHoc.
Medium
5
CVE-2024-51723
Vulnerability in Management Console Impacts BlackBerry AtHoc
Medium
4.6
CVE-2024-51722
Vulnerabilities in SecuSUITE Server Components Impact SecuSUITE
Medium
6.4
CVE-2024-51721
Vulnerabilities in SecuSUITE Server Components Impact SecuSUITE
High
7.3
Affected Vendor
BlackBerry
View all reports →Affected Software
QNX Software Development Platform (QNX SDP)
Vulnerable Versions:
6.6.0
Timeline
Official Publish:
November 14th, 2017
Last Modified:
July 22nd, 2025
Added to House:
July 20th, 2026
CVSS Vectors
V3:
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:N/I:L/A:N