The timer implementation in QNX RTOS 6.1.0 allows local users to cause a denial of service (hang) and possibly execute arbitrary code by creating multiple timers with a 1-ms tick.
Link | Tags |
---|---|
http://online.securityfocus.com/archive/1/298689 | mailing list |
https://exchange.xforce.ibmcloud.com/vulnerabilities/10550 | vdb entry |
http://www.securityfocus.com/bid/6114 | vdb entry exploit |