Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2019-18281

Опубликовано: 23 окт. 2019
Источник: debian

Описание

An out-of-bounds memory access in the generateDirectionalRuns() function in qtextengine.cpp in Qt qtbase 5.11.x and 5.12.x before 5.12.5 allows attackers to cause a denial of service by crashing an application via a text file containing many directional characters.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
qtbase-opensource-src-glesfixed5.12.5+dfsg-1package
qtbase-opensource-srcfixed5.12.5+dfsg-2package
qtbase-opensource-srcno-dsabusterpackage
qtbase-opensource-srcnot-affectedstretchpackage
qtbase-opensource-srcnot-affectedjessiepackage

Примечания

  • https://github.com/qt/qtbase/commit/af6ac444c97ed2dc234f93fe457440c9da5482ea

  • https://bugreports.qt.io/browse/QTBUG-77819

Связанные уязвимости

CVSS3: 4.3
ubuntu
больше 6 лет назад

An out-of-bounds memory access in the generateDirectionalRuns() function in qtextengine.cpp in Qt qtbase 5.11.x and 5.12.x before 5.12.5 allows attackers to cause a denial of service by crashing an application via a text file containing many directional characters.

CVSS3: 4.3
redhat
больше 6 лет назад

An out-of-bounds memory access in the generateDirectionalRuns() function in qtextengine.cpp in Qt qtbase 5.11.x and 5.12.x before 5.12.5 allows attackers to cause a denial of service by crashing an application via a text file containing many directional characters.

CVSS3: 4.3
nvd
больше 6 лет назад

An out-of-bounds memory access in the generateDirectionalRuns() function in qtextengine.cpp in Qt qtbase 5.11.x and 5.12.x before 5.12.5 allows attackers to cause a denial of service by crashing an application via a text file containing many directional characters.

github
больше 3 лет назад

An out-of-bounds memory access in the generateDirectionalRuns() function in qtextengine.cpp in Qt qtbase 5.11.x and 5.12.x before 5.12.5 allows attackers to cause a denial of service by crashing an application via a text file containing many directional characters.

CVSS3: 4.3
fstec
больше 6 лет назад

Уязвимость функции generateDirectionalRuns() библиотеки Qt, связанная с выходом операции за границы буфера в памяти, позволяющая нарушителю вызвать отказ в обслуживании