Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2024-4647

Опубликовано: 09 сент. 2024
Источник: oracle-oval
Платформа: Oracle Linux 7

Описание

ELSA-2024-4647: qt5-qtbase security update (IMPORTANT)

[5.9.7-5.0.1]

  • Backport fix for CVE-2024-39936 [Orabug: 36904373]

Обновленные пакеты

Oracle Linux 7

Oracle Linux aarch64

qt5-qtbase

5.9.7-5.0.1.el7_9

qt5-qtbase-common

5.9.7-5.0.1.el7_9

qt5-qtbase-devel

5.9.7-5.0.1.el7_9

qt5-qtbase-doc

5.9.7-5.0.1.el7_9

qt5-qtbase-examples

5.9.7-5.0.1.el7_9

qt5-qtbase-gui

5.9.7-5.0.1.el7_9

qt5-qtbase-mysql

5.9.7-5.0.1.el7_9

qt5-qtbase-odbc

5.9.7-5.0.1.el7_9

qt5-qtbase-postgresql

5.9.7-5.0.1.el7_9

qt5-qtbase-static

5.9.7-5.0.1.el7_9

qt5-rpm-macros

5.9.7-5.0.1.el7_9

Oracle Linux x86_64

qt5-qtbase

5.9.7-5.0.1.el7_9

qt5-qtbase-common

5.9.7-5.0.1.el7_9

qt5-qtbase-devel

5.9.7-5.0.1.el7_9

qt5-qtbase-doc

5.9.7-5.0.1.el7_9

qt5-qtbase-examples

5.9.7-5.0.1.el7_9

qt5-qtbase-gui

5.9.7-5.0.1.el7_9

qt5-qtbase-mysql

5.9.7-5.0.1.el7_9

qt5-qtbase-odbc

5.9.7-5.0.1.el7_9

qt5-qtbase-postgresql

5.9.7-5.0.1.el7_9

qt5-qtbase-static

5.9.7-5.0.1.el7_9

qt5-rpm-macros

5.9.7-5.0.1.el7_9

Связанные CVE

Связанные уязвимости

CVSS3: 8.6
ubuntu
около 1 года назад

An issue was discovered in HTTP2 in Qt before 5.15.18, 6.x before 6.2.13, 6.3.x through 6.5.x before 6.5.7, and 6.6.x through 6.7.x before 6.7.3. Code to make security-relevant decisions about an established connection may execute too early, because the encrypted() signal has not yet been emitted and processed..

CVSS3: 7.5
redhat
около 1 года назад

An issue was discovered in HTTP2 in Qt before 5.15.18, 6.x before 6.2.13, 6.3.x through 6.5.x before 6.5.7, and 6.6.x through 6.7.x before 6.7.3. Code to make security-relevant decisions about an established connection may execute too early, because the encrypted() signal has not yet been emitted and processed..

CVSS3: 8.6
nvd
около 1 года назад

An issue was discovered in HTTP2 in Qt before 5.15.18, 6.x before 6.2.13, 6.3.x through 6.5.x before 6.5.7, and 6.6.x through 6.7.x before 6.7.3. Code to make security-relevant decisions about an established connection may execute too early, because the encrypted() signal has not yet been emitted and processed..

CVSS3: 5.9
msrc
около 1 года назад

Описание отсутствует

CVSS3: 8.6
debian
около 1 года назад

An issue was discovered in HTTP2 in Qt before 5.15.18, 6.x before 6.2. ...