CVE-2024-48857

NULL pointer dereference in the PCX image codec in QNX SDP versions 8.0, 7.1 and 7.0 could allow an unauthenticated attacker to cause a denial-of-service condition in the context of the process using the image codec.
References
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:blackberry:qnx_software_development_platform:7.0:*:*:*:*:*:*:*
cpe:2.3:a:blackberry:qnx_software_development_platform:7.1:*:*:*:*:*:*:*
cpe:2.3:a:blackberry:qnx_software_development_platform:8.0:*:*:*:*:*:*:*

History

21 Jan 2025, 18:06

Type Values Removed Values Added
References () https://support.blackberry.com/pkb/s/article/140334 - () https://support.blackberry.com/pkb/s/article/140334 - Vendor Advisory
Summary
  • (es) La desreferencia de puntero NULL en el códec de imagen PCX en las versiones 8.0, 7.1 y 7.0 de QNX SDP podría permitir que un atacante no autenticado provoque una condición de denegación de servicio en el contexto del proceso que utiliza el códec de imagen.
First Time Blackberry
Blackberry qnx Software Development Platform
CPE cpe:2.3:a:blackberry:qnx_software_development_platform:8.0:*:*:*:*:*:*:*
cpe:2.3:a:blackberry:qnx_software_development_platform:7.0:*:*:*:*:*:*:*
cpe:2.3:a:blackberry:qnx_software_development_platform:7.1:*:*:*:*:*:*:*

14 Jan 2025, 19:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-01-14 19:15

Updated : 2025-01-21 18:06


NVD link : CVE-2024-48857

Mitre link : CVE-2024-48857

CVE.ORG link : CVE-2024-48857


JSON object : View

Products Affected

blackberry

  • qnx_software_development_platform
CWE
CWE-476

NULL Pointer Dereference