Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2023-6967

Опубликовано: 17 нояб. 2023
Источник: oracle-oval
Платформа: Oracle Linux 8

Описание

ELSA-2023-6967: qt5-qtbase security update (MODERATE)

[5.15.3-5]

  • Fix infinite loops in QXmlStreamReader (CVE-2023-38197) Resolves: bz#2222770

[5.15.3-4]

  • Don't allow remote attacker to bypass security restrictions caused by flaw in certificate validation (CVE-2023-34410) (version #2) Resolves: bz#2212753

[5.15.3-3]

  • Don't allow remote attacker to bypass security restrictions caused by flaw in certificate validation (CVE-2023-34410) Resolves: bz#2212753

[5.15.3-2]

  • Fix specific overflow in qtextlayout
  • Fix incorrect parsing of the strict-transport-security (HSTS) header
  • Fix buffer over-read via a crafted reply from a DNS server Resolves: bz#2209491

Обновленные пакеты

Oracle Linux 8

Oracle Linux aarch64

qt5-qtbase

5.15.3-5.el8

qt5-qtbase-common

5.15.3-5.el8

qt5-qtbase-devel

5.15.3-5.el8

qt5-qtbase-examples

5.15.3-5.el8

qt5-qtbase-gui

5.15.3-5.el8

qt5-qtbase-mysql

5.15.3-5.el8

qt5-qtbase-odbc

5.15.3-5.el8

qt5-qtbase-postgresql

5.15.3-5.el8

qt5-qtbase-private-devel

5.15.3-5.el8

qt5-qtbase-static

5.15.3-5.el8

Oracle Linux x86_64

qt5-qtbase

5.15.3-5.el8

qt5-qtbase-common

5.15.3-5.el8

qt5-qtbase-devel

5.15.3-5.el8

qt5-qtbase-examples

5.15.3-5.el8

qt5-qtbase-gui

5.15.3-5.el8

qt5-qtbase-mysql

5.15.3-5.el8

qt5-qtbase-odbc

5.15.3-5.el8

qt5-qtbase-postgresql

5.15.3-5.el8

qt5-qtbase-private-devel

5.15.3-5.el8

qt5-qtbase-static

5.15.3-5.el8

Связанные уязвимости

oracle-oval
больше 1 года назад

ELSA-2023-6369: qt5 security and bug fix update (MODERATE)

suse-cvrf
около 2 лет назад

Security update for libqt5-qtbase

suse-cvrf
почти 2 года назад

Security update for qt6-base

suse-cvrf
почти 2 года назад

Security update for qt6-base

suse-cvrf
около 2 лет назад

Security update for libqt5-qtbase