Описание
ELSA-2013-0669: qt security update (MODERATE)
[1:4.6.2-26]
- Resolves: CVE-2013-0254, QSharedMemory class created shared memory segments with insecure permissions
Обновленные пакеты
Oracle Linux 6
Oracle Linux x86_64
phonon-backend-gstreamer
4.6.2-26.el6_4
qt
4.6.2-26.el6_4
qt-demos
4.6.2-26.el6_4
qt-devel
4.6.2-26.el6_4
qt-doc
4.6.2-26.el6_4
qt-examples
4.6.2-26.el6_4
qt-mysql
4.6.2-26.el6_4
qt-odbc
4.6.2-26.el6_4
qt-postgresql
4.6.2-26.el6_4
qt-sqlite
4.6.2-26.el6_4
qt-x11
4.6.2-26.el6_4
Oracle Linux i686
phonon-backend-gstreamer
4.6.2-26.el6_4
qt
4.6.2-26.el6_4
qt-demos
4.6.2-26.el6_4
qt-devel
4.6.2-26.el6_4
qt-doc
4.6.2-26.el6_4
qt-examples
4.6.2-26.el6_4
qt-mysql
4.6.2-26.el6_4
qt-odbc
4.6.2-26.el6_4
qt-postgresql
4.6.2-26.el6_4
qt-sqlite
4.6.2-26.el6_4
qt-x11
4.6.2-26.el6_4
Связанные CVE
Связанные уязвимости
The QSharedMemory class in Qt 5.0.0, 4.8.x before 4.8.5, 4.7.x before 4.7.6, and other versions including 4.4.0 uses weak permissions (world-readable and world-writable) for shared memory segments, which allows local users to read sensitive information or modify critical program data, as demonstrated by reading a pixmap being sent to an X server.
The QSharedMemory class in Qt 5.0.0, 4.8.x before 4.8.5, 4.7.x before 4.7.6, and other versions including 4.4.0 uses weak permissions (world-readable and world-writable) for shared memory segments, which allows local users to read sensitive information or modify critical program data, as demonstrated by reading a pixmap being sent to an X server.
The QSharedMemory class in Qt 5.0.0, 4.8.x before 4.8.5, 4.7.x before 4.7.6, and other versions including 4.4.0 uses weak permissions (world-readable and world-writable) for shared memory segments, which allows local users to read sensitive information or modify critical program data, as demonstrated by reading a pixmap being sent to an X server.
The QSharedMemory class in Qt 5.0.0, 4.8.x before 4.8.5, 4.7.x before ...
The QSharedMemory class in Qt 5.0.0, 4.8.x before 4.8.5, 4.7.x before 4.7.6, and other versions including 4.4.0 uses weak permissions (world-readable and world-writable) for shared memory segments, which allows local users to read sensitive information or modify critical program data, as demonstrated by reading a pixmap being sent to an X server.