ZeroHour

CVE-2024-48855

CVSS 3.1
7.5 high
EPSS
<1%p30
Published
()
Modified
Description

Out-of-bounds read in the TIFF image codec in QNX SDP versions 8.0, 7.1 and 7.0 could allow an unauthenticated attacker to cause an information disclosure in the context of the process using the image codec.

Vendors
blackberry
Products
qnx software development platform
Weakness
CWE-125
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.