Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2023-33285

Опубликовано: 22 мая 2023
Источник: debian

Описание

An issue was discovered in Qt 5.x before 5.15.14, 6.x before 6.2.9, and 6.3.x through 6.5.x before 6.5.1. QDnsLookup has a buffer over-read via a crafted reply from a DNS server.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
qt6-basefixed6.4.2+dfsg-10package
qt6-baseno-dsabookwormpackage
qtbase-opensource-srcfixed5.15.8+dfsg-11package
qtbase-opensource-srcfixed5.15.2+dfsg-9+deb11u1bullseyepackage
qtbase-opensource-src-glesfixed5.15.10+dfsg-2package
qtbase-opensource-src-glesno-dsabookwormpackage
qtbase-opensource-src-glesno-dsabullseyepackage

Примечания

  • https://codereview.qt-project.org/c/qt/qtbase/+/477644

Связанные уязвимости

CVSS3: 5.3
ubuntu
около 2 лет назад

An issue was discovered in Qt 5.x before 5.15.14, 6.x before 6.2.9, and 6.3.x through 6.5.x before 6.5.1. QDnsLookup has a buffer over-read via a crafted reply from a DNS server.

CVSS3: 5.3
redhat
около 2 лет назад

An issue was discovered in Qt 5.x before 5.15.14, 6.x before 6.2.9, and 6.3.x through 6.5.x before 6.5.1. QDnsLookup has a buffer over-read via a crafted reply from a DNS server.

CVSS3: 5.3
nvd
около 2 лет назад

An issue was discovered in Qt 5.x before 5.15.14, 6.x before 6.2.9, and 6.3.x through 6.5.x before 6.5.1. QDnsLookup has a buffer over-read via a crafted reply from a DNS server.

CVSS3: 5.3
github
около 2 лет назад

An issue was discovered in Qt 5.x before 5.15.14, 6.x before 6.2.9, and 6.3.x through 6.5.x before 6.5.1. QDnsLookup has a buffer over-read via a crafted reply from a DNS server.

CVSS3: 5.3
fstec
около 2 лет назад

Уязвимость компонента QDnsLookup кроссплатформенного фреймворка для разработки программного обеспечения Qt, позволяющая нарушителю вызвать отказ в обслуживании