{"resultsPerPage":1,"startIndex":0,"totalResults":1,"format":"NVD_CVE","version":"2.0","timestamp":"2026-06-17T11:20:40.861","vulnerabilities":[{"cve":{"id":"CVE-2017-9371","sourceIdentifier":"secure@blackberry.com","published":"2017-11-14T21:29:01.167","lastModified":"2026-05-13T00:24:29.033","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"In BlackBerry QNX Software Development Platform (SDP) 6.6.0 and 6.5.0 SP1 and earlier, a loss of integrity vulnerability in the default configuration of the QNX SDP could allow an attacker being able to reduce the entropy of the PRNG, making other blended attacks more practical by gaining control over environmental factors that influence seed generation."},{"lang":"es","value":"En BlackBerry QNX Software Development Platform (SDP) 6.6.0 y 6.5.0 SP1 y anteriores, una vulnerabilidad de pérdida de integridad en la configuración por defecto de la plataforma QNX SDP podría permitir que un atacante sea capaz de reducir la entropía del PRNG, haciendo que otros ataques combinados sean más prácticos mediante la obtención del control sobre factores del entorno que influyen en la generación de semillas."}],"metrics":{"cvssMetricV31":[{"source":"secure@blackberry.com","type":"Secondary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:C/C:N/I:L/A:N","baseScore":2.6,"baseSeverity":"LOW","attackVector":"PHYSICAL","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"CHANGED","confidentialityImpact":"NONE","integrityImpact":"LOW","availabilityImpact":"NONE"},"exploitabilityScore":0.9,"impactScore":1.4}],"cvssMetricV30":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"3.0","vectorString":"CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N","baseScore":5.9,"baseSeverity":"MEDIUM","attackVector":"NETWORK","attackComplexity":"HIGH","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"HIGH","availabilityImpact":"NONE"},"exploitabilityScore":2.2,"impactScore":3.6}],"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:M/Au:N/C:N/I:P/A:N","baseScore":4.3,"accessVector":"NETWORK","accessComplexity":"MEDIUM","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":8.6,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"secure@blackberry.com","type":"Secondary","description":[{"lang":"en","value":"CWE-332"}]},{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-332"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:blackberry:qnx_software_development_platform:6.5.0:*:*:*:*:*:*:*","matchCriteriaId":"1766E1E7-19FE-45A5-8191-BA0CF84BB768"},{"vulnerable":true,"criteria":"cpe:2.3:a:blackberry:qnx_software_development_platform:6.5.0:sp1:*:*:*:*:*:*","matchCriteriaId":"11F2C680-2F44-4CBC-BC7E-B608726302D2"},{"vulnerable":true,"criteria":"cpe:2.3:a:blackberry:qnx_software_development_platform:6.6.0:*:*:*:*:*:*:*","matchCriteriaId":"FF1D7FB0-C40B-4DD6-B3C5-D90FBCCBAF23"}]}]}],"references":[{"url":"http://support.blackberry.com/kb/articleDetail?language=en_US&articleNumber=000046674","source":"secure@blackberry.com","tags":["Vendor Advisory"]},{"url":"http://support.blackberry.com/kb/articleDetail?language=en_US&articleNumber=000046674","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}}]}