Vulnerability Description
The runtime linker in QNX Neutrino RTOS 6.5.0 before Service Pack 1 does not properly clear the LD_DEBUG_OUTPUT and LD_DEBUG environment variables when a program is spawned from a setuid program, which allows local users to overwrite files via a symlink attack.
CVSS Score
LOW
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Qnx | Neutrino Rtos | 6.5.0 |
Related Weaknesses (CWE)
References
- http://securityreason.com/securityalert/8475
- http://www.nth-dimension.org.uk/pub/NDSA20110310.txt.asc
- http://www.osvdb.org/71784
- http://www.qnx.com/developers/articles/rel_5189_46.html
- http://www.qnx.com/developers/docs/6.5.0_sp1/index.jsp?topic=%2Fcom.qnx.doc.mome
- http://www.securityfocus.com/archive/1/516958
- http://www.securityfocus.com/archive/1/518659
- http://www.securityfocus.com/bid/46838
- http://securityreason.com/securityalert/8475
- http://www.nth-dimension.org.uk/pub/NDSA20110310.txt.asc
- http://www.osvdb.org/71784
- http://www.qnx.com/developers/articles/rel_5189_46.html
- http://www.qnx.com/developers/docs/6.5.0_sp1/index.jsp?topic=%2Fcom.qnx.doc.mome
- http://www.securityfocus.com/archive/1/516958
- http://www.securityfocus.com/archive/1/518659
FAQ
What is CVE-2011-4060?
CVE-2011-4060 is a vulnerability with a CVSS score of 3.3 (LOW). The runtime linker in QNX Neutrino RTOS 6.5.0 before Service Pack 1 does not properly clear the LD_DEBUG_OUTPUT and LD_DEBUG environment variables when a program is spawned from a setuid program, whic...
How severe is CVE-2011-4060?
CVE-2011-4060 has been rated LOW with a CVSS base score of 3.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2011-4060?
Check the references section above for vendor advisories and patch information. Affected products include: Qnx Neutrino Rtos.