CVE-2026-0515: Insufficient parameter validation in the QNX Neutrino kernel impacts versions of the QNX Software Development Platform and QNX OS for Safety
Published Jul 14, 2026
·Updated
Insufficient Parameter Validation in the SchedGet() system call could allow an attacker with local access to cause a crash of the QNX Neutrino kernel.
Affected Software
3 affected components
QNX QNX Neutrino kernel
QNX QNX Software Development Platform
QNX QNX OS for Safety
Event History
Jul 14, 2026
CVE Published
via MITRE·05:13 PM
Data Sourced
via MITRE·05:13 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·06:17 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2026-0515?
CVE-2026-0515 has a medium severity rating of 6.2.
2
What is the impact of CVE-2026-0515?
CVE-2026-0515 allows an attacker with local access to crash the QNX Neutrino kernel due to insufficient parameter validation.
3
How do I fix CVE-2026-0515?
To fix CVE-2026-0515, ensure you update to the latest patched version of the QNX Neutrino kernel.
4
Which versions are affected by CVE-2026-0515?
CVE-2026-0515 affects versions of the QNX Neutrino kernel, QNX Software Development Platform, and QNX OS for Safety.
5
Who is affected by CVE-2026-0515?
Organizations using the specified versions of QNX products are at risk from CVE-2026-0515.