# CVE-2026-0515

## Summary

- **CVE ID:** CVE-2026-0515
- **Severity:** MEDIUM
- **CVSS Score:** 6.2 (CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H)
- **CWE:** CWE-233
- **Published:** Jul 14, 2026
- **Last Modified:** Jul 15, 2026

## Description

Insufficient Parameter Validation in the SchedGet() system call could allow an attacker with local access to cause a crash of the QNX Neutrino kernel.

## Affected Products

- BlackBerry Ltd — QNX Software Development Platform (7.1)
- BlackBerry Ltd — QNX Software Development Platform (cpe:2.3:a:blackberry:qnx_software_development_platform:7.1:*:*:*:*:*:*:*)
- BlackBerry Ltd — QNX Software Development Platform (7.0)
- BlackBerry Ltd — QNX Software Development Platform (cpe:2.3:a:blackberry:qnx_software_development_platform:7.0:*:*:*:*:*:*:*)
- BlackBerry Ltd — QNX OS for Safety (2.2.8 and earlier)
- BlackBerry Ltd — QNX OS for Safety (cpe:2.3:o:blackberry:qnx_os_for_safety:2.2:8:*:*:*:*:*:*)
- BlackBerry Ltd — QNX OS for Safety (2.1.5 and earlier)
- BlackBerry Ltd — QNX OS for Safety (cpe:2.3:o:blackberry:qnx_os_for_safety:2.1:5:*:*:*:*:*:*)
- BlackBerry Ltd — QNX OS for Safety (2.0.3 and earlier)
- BlackBerry Ltd — QNX OS for Safety (cpe:2.3:o:blackberry:qnx_os_for_safety:2.0:3:*:*:*:*:*:*)
- BlackBerry Ltd. — QNX OS for Medical (2.0.2 and earlier)
- BlackBerry Ltd. — QNX OS for Medical (cpe:2.3:o:blackberry:qnx_os_for_medical:2.0:2:*:*:*:*:*:*)

## References

- [CNA](https://support.blackberry.com/pkb/s/article/141213)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 0.15%
- **EPSS Percentile:** 4.5

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-11._