Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2015-0295

Опубликовано: 27 фев. 2015
Источник: redhat
CVSS2: 4.3

Описание

The BMP decoder in QtGui in QT before 5.5 does not properly calculate the masks used to extract the color components, which allows remote attackers to cause a denial of service (divide-by-zero and crash) via a crafted BMP file.

Отчет

This issue affects the versions of Qt as shipped with Red Hat Enterprise Linux 5, 6 and 7. Red Hat Product Security has rated this issue as having Low security impact. A future update may address this issue. For additional information, refer to the Issue Severity Classification: https://access.redhat.com/security/updates/classification/.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 4qtWill not fix
Red Hat Enterprise Linux 5qtWill not fix
Red Hat Enterprise Linux 5qt4Will not fix
Red Hat Enterprise Linux 6qtWill not fix
Red Hat Enterprise Linux 6qt3Will not fix
Red Hat Enterprise Linux 7qtWill not fix
Red Hat Enterprise Linux 7qt3Will not fix

Показывать по

Дополнительная информация

Статус:

Low
Дефект:
CWE-369

4.3 Medium

CVSS2

Связанные уязвимости

ubuntu
почти 11 лет назад

The BMP decoder in QtGui in QT before 5.5 does not properly calculate the masks used to extract the color components, which allows remote attackers to cause a denial of service (divide-by-zero and crash) via a crafted BMP file.

nvd
почти 11 лет назад

The BMP decoder in QtGui in QT before 5.5 does not properly calculate the masks used to extract the color components, which allows remote attackers to cause a denial of service (divide-by-zero and crash) via a crafted BMP file.

debian
почти 11 лет назад

The BMP decoder in QtGui in QT before 5.5 does not properly calculate ...

github
больше 3 лет назад

The BMP decoder in QtGui in QT before 5.5 does not properly calculate the masks used to extract the color components, which allows remote attackers to cause a denial of service (divide-by-zero and crash) via a crafted BMP file.

suse-cvrf
больше 10 лет назад

Security update for libqt5-qtbase

4.3 Medium

CVSS2