Search CVE reports


Toggle filters

31 – 40 of 43 results


CVE-2018-19872

Low priority

Some fixes available 2 of 3

An issue was discovered in Qt 5.11. A malformed PPM image causes a division by zero and a crash in qppmhandler.cpp.

1 affected package

qtbase-opensource-src

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qtbase-opensource-src Fixed
Show less packages

CVE-2018-19870

Medium priority
Fixed

An issue was discovered in Qt before 5.11.3. A malformed GIF image causes a NULL pointer dereference in QGifHandler resulting in a segmentation fault.

1 affected package

qtbase-opensource-src

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qtbase-opensource-src Fixed
Show less packages

CVE-2018-15518

Medium priority
Fixed

QXmlStream in Qt 5.x before 5.11.3 has a double-free or corruption during parsing of a specially crafted illegal XML document.

1 affected package

qtbase-opensource-src

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qtbase-opensource-src Fixed
Show less packages

CVE-2017-10905

Medium priority
Ignored

A vulnerability in applications created using Qt for Android prior to 5.9.3 allows attackers to alter environment variables via unspecified vectors.

2 affected packages

qt4-x11, qtbase-opensource-src

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qt4-x11
qtbase-opensource-src
Show less packages

CVE-2017-10904

Medium priority
Ignored

Qt for Android prior to 5.9.0 allows remote attackers to execute arbitrary OS commands via unspecified vectors.

2 affected packages

qt4-x11, qtbase-opensource-src

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qt4-x11
qtbase-opensource-src
Show less packages

CVE-2016-10040

Low priority
Vulnerable

Stack-based buffer overflow in QXmlSimpleReader in Qt 4.8.5 allows remote attackers to cause a denial of service (application crash) via a xml file with multiple nested open tags.

2 affected packages

qt4-x11, qtbase-opensource-src

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qt4-x11 Not in release Not in release Not in release Not affected
qtbase-opensource-src Not affected Not affected Not affected Not affected
Show less packages

CVE-2015-9541

Low priority
Vulnerable

Qt through 5.14 allows an exponential XML entity expansion attack via a crafted SVG document that is mishandled in QXmlStreamReader, a related issue to CVE-2003-1564.

5 affected packages

phantomjs, pyside, pyside2, qt4-x11, qtbase-opensource-src

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
phantomjs Not in release Not in release Vulnerable Vulnerable
pyside Not in release Not in release Not in release Vulnerable
pyside2 Vulnerable Vulnerable Vulnerable Not in release
qt4-x11 Not in release Not in release Not in release Vulnerable
qtbase-opensource-src Not affected Not affected Not affected Vulnerable
Show less packages

CVE-2015-1860

Low priority

Some fixes available 7 of 8

Multiple buffer overflows in gui/image/qgifhandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remote attackers to cause a denial of service (segmentation fault) and possibly execute arbitrary code via a...

2 affected packages

qt4-x11, qtbase-opensource-src

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qt4-x11
qtbase-opensource-src
Show less packages

CVE-2015-1859

Low priority

Some fixes available 7 of 8

Multiple buffer overflows in plugins/imageformats/ico/qicohandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remote attackers to cause a denial of service (segmentation fault and crash) and possibly...

2 affected packages

qt4-x11, qtbase-opensource-src

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qt4-x11
qtbase-opensource-src
Show less packages

CVE-2015-1858

Low priority

Some fixes available 14 of 19

Multiple buffer overflows in gui/image/qbmphandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remote attackers to cause a denial of service (segmentation fault and crash) and possibly execute arbitrary...

2 affected packages

qt4-x11, qtbase-opensource-src

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qt4-x11 Fixed
qtbase-opensource-src Not affected
Show less packages