Описание
An issue was discovered in Qt 5.x before 5.15.14, 6.x before 6.2.9, and 6.3.x through 6.5.x before 6.5.1. QDnsLookup has a buffer over-read via a crafted reply from a DNS server.
Пакеты
Пакет | Статус | Версия исправления | Релиз | Тип |
---|---|---|---|---|
qt6-base | fixed | 6.4.2+dfsg-10 | package | |
qt6-base | no-dsa | bookworm | package | |
qtbase-opensource-src | fixed | 5.15.8+dfsg-11 | package | |
qtbase-opensource-src | fixed | 5.15.2+dfsg-9+deb11u1 | bullseye | package |
qtbase-opensource-src-gles | fixed | 5.15.10+dfsg-2 | package | |
qtbase-opensource-src-gles | no-dsa | bookworm | package | |
qtbase-opensource-src-gles | no-dsa | bullseye | package |
Примечания
https://codereview.qt-project.org/c/qt/qtbase/+/477644
Связанные уязвимости
An issue was discovered in Qt 5.x before 5.15.14, 6.x before 6.2.9, and 6.3.x through 6.5.x before 6.5.1. QDnsLookup has a buffer over-read via a crafted reply from a DNS server.
An issue was discovered in Qt 5.x before 5.15.14, 6.x before 6.2.9, and 6.3.x through 6.5.x before 6.5.1. QDnsLookup has a buffer over-read via a crafted reply from a DNS server.
An issue was discovered in Qt 5.x before 5.15.14, 6.x before 6.2.9, and 6.3.x through 6.5.x before 6.5.1. QDnsLookup has a buffer over-read via a crafted reply from a DNS server.
An issue was discovered in Qt 5.x before 5.15.14, 6.x before 6.2.9, and 6.3.x through 6.5.x before 6.5.1. QDnsLookup has a buffer over-read via a crafted reply from a DNS server.
Уязвимость компонента QDnsLookup кроссплатформенного фреймворка для разработки программного обеспечения Qt, позволяющая нарушителю вызвать отказ в обслуживании