CVE-2026-4018 Details
Description
TOCTOU Race Condition in specific trace commands of the TraceEvent() system call could allow an attacker with local access and with the PROCMGR_AID_TRACE ability, to cause information disclosure, data tampering or a crash of the QNX Neutrino kernel.
A TOCTOU race condition vulnerability has been identified in the QNX Neutrino kernel, specifically within certain trace commands of the TraceEvent() system call. This vulnerability allows an attacker with local access and the PROCMGR_AID_TRACE ability to cause information disclosure, data tampering, or a crash of the kernel. Affected products include QNX Software Development Platform (SDP) versions 7.1 and 7.0, QNX OS for Safety versions 2.2.8 and earlier, 2.1.5 and earlier, 2.0.3 and earlier, and QNX OS for Medical 2.0.2 and earlier.
Users are advised to update to QNX SDP 7.1 (version 1.4.0.03213T202604101602L or later), QNX SDP 7.0 (version 7.0.7230.L202604101242 or later), QNX OS for Safety 2.2.9 (version 2.2.9.00079T202604131114S or later), QNX OS for Safety 2.1.6 (version 2.1.4354.S202604131324 or later), or QNX OS for Safety 2.0.4 / QNX OS for Medical 2.0.3 (version 2.0.660.S202604131425 or later).
Metrics
CVSS 4.0 Severity and Vector Strings:
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
Volerion
Assessed Jul 14, 2026CISA-ADP
Assessed Jul 15, 2026References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://support.blackberry.com/pkb/s/article/141213 | [email protected] | AdvisoryBundleRemedyVendor |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-367 | Time-of-check Time-of-use (TOCTOU) Race Condition | [email protected] |
Affected Products
| Product | Versions |
|---|---|
| BlackBerry QNX Software Development Platform | 7.1 7.0 |
CPE
Remediation
| |
| BlackBerry QNX OS for Safety | 2.2.8 (semver) 2.1.5 (semver) 2.0.3 (semver) |
CPE
Remediation
| |
| BlackBerry QNX OS for Medical | 2.0.2 (semver) |
CPE
Remediation
| |
Change History
2 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jul 15, 2026 | CVE Modified | CISA-ADP |
| Jul 14, 2026 | New CVE Received | [email protected] |
Volerion