Critical severity9.8NVD Advisory· Published Jun 10, 2025· Updated Jun 17, 2026
CVE-2025-2474
CVE-2025-2474
Description
Out-of-bounds write in the PCX image codec in QNX SDP versions 8.0, 7.1 and 7.0 could allow an unauthenticated attacker to cause a denial-of-service condition or execute code in the context of the process using the image codec.
Affected products
6cpe:2.3:a:blackberry:qnx_software_development_platform:7.0:*:*:*:*:*:*:*+ 3 more
- cpe:2.3:a:blackberry:qnx_software_development_platform:7.0:*:*:*:*:*:*:*
- cpe:2.3:a:blackberry:qnx_software_development_platform:7.1:*:*:*:*:*:*:*
- cpe:2.3:a:blackberry:qnx_software_development_platform:8.0:*:*:*:*:*:*:*
- (no CPE)range: 8.0, 7.1 and 7.0
- Range: 8.0, 7.1, 7.0
Patches
Vulnerability mechanics
References
1- support.blackberry.com/pkb/s/article/140646nvdVendor Advisory
News mentions
0No linked articles in our index yet.