Search CVE reports


Toggle filters

31 – 40 of 43 results


CVE-2018-19872

Low priority

Some fixes available 2 of 3

An issue was discovered in Qt 5.11. A malformed PPM image causes a division by zero and a crash in qppmhandler.cpp.

1 affected package

qtbase-opensource-src

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qtbase-opensource-src Fixed
Show less packages

CVE-2018-19870

Medium priority
Fixed

An issue was discovered in Qt before 5.11.3. A malformed GIF image causes a NULL pointer dereference in QGifHandler resulting in a segmentation fault.

1 affected package

qtbase-opensource-src

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qtbase-opensource-src Fixed
Show less packages

CVE-2018-15518

Medium priority
Fixed

QXmlStream in Qt 5.x before 5.11.3 has a double-free or corruption during parsing of a specially crafted illegal XML document.

1 affected package

qtbase-opensource-src

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qtbase-opensource-src Fixed
Show less packages

CVE-2017-10905

Medium priority
Ignored

A vulnerability in applications created using Qt for Android prior to 5.9.3 allows attackers to alter environment variables via unspecified vectors.

2 affected packages

qt4-x11, qtbase-opensource-src

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qt4-x11
qtbase-opensource-src
Show less packages

CVE-2017-10904

Medium priority
Ignored

Qt for Android prior to 5.9.0 allows remote attackers to execute arbitrary OS commands via unspecified vectors.

2 affected packages

qt4-x11, qtbase-opensource-src

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qt4-x11
qtbase-opensource-src
Show less packages

CVE-2016-10040

Low priority
Vulnerable

Stack-based buffer overflow in QXmlSimpleReader in Qt 4.8.5 allows remote attackers to cause a denial of service (application crash) via a xml file with multiple nested open tags.

2 affected packages

qt4-x11, qtbase-opensource-src

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qt4-x11 Not in release Not in release Not in release Not affected
qtbase-opensource-src Not affected Not affected Not affected Not affected
Show less packages

CVE-2015-9541

Low priority
Vulnerable

Qt through 5.14 allows an exponential XML entity expansion attack via a crafted SVG document that is mishandled in QXmlStreamReader, a related issue to CVE-2003-1564.

5 affected packages

pyside, qt4-x11, qtbase-opensource-src, phantomjs, pyside2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
pyside Not in release Not in release Not in release Vulnerable
qt4-x11 Not in release Not in release Not in release Vulnerable
qtbase-opensource-src Not affected Not affected Not affected Vulnerable
phantomjs Not in release Not in release Vulnerable Vulnerable
pyside2 Vulnerable Vulnerable Vulnerable Not in release
Show less packages

CVE-2015-1860

Low priority

Some fixes available 7 of 8

Multiple buffer overflows in gui/image/qgifhandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remote attackers to cause a denial of service (segmentation fault) and possibly execute arbitrary code via a...

2 affected packages

qt4-x11, qtbase-opensource-src

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qt4-x11
qtbase-opensource-src
Show less packages

CVE-2015-1859

Low priority

Some fixes available 7 of 8

Multiple buffer overflows in plugins/imageformats/ico/qicohandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remote attackers to cause a denial of service (segmentation fault and crash) and possibly...

2 affected packages

qt4-x11, qtbase-opensource-src

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qt4-x11
qtbase-opensource-src
Show less packages

CVE-2015-1858

Low priority

Some fixes available 14 of 19

Multiple buffer overflows in gui/image/qbmphandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remote attackers to cause a denial of service (segmentation fault and crash) and possibly execute arbitrary...

2 affected packages

qt4-x11, qtbase-opensource-src

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qt4-x11 Fixed
qtbase-opensource-src Not affected
Show less packages