Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2021-3481

Опубликовано: 22 фев. 2021
Источник: redhat
CVSS3: 7.1

Описание

A flaw was found in Qt. An out-of-bounds read vulnerability was found in QRadialFetchSimd in qt/qtbase/src/gui/painting/qdrawhelper_p.h in Qt/Qtbase. While rendering and displaying a crafted Scalable Vector Graphics (SVG) file this flaw may lead to an unauthorized memory access. The highest threat from this vulnerability is to data confidentiality and the application availability.

A flaw was found in Qt. An out-of-bounds read vulnerability was found in QRadialFetchSimd in qt/qtbase/src/gui/painting/qdrawhelper_p.h in Qt/Qtbase. While rendering and displaying a crafted Scalable Vector Graphics (SVG) file this flaw may lead to an unauthorized memory access. The highest threat from this vulnerability is to data confidentiality the application availability.

Меры по смягчению последствий

Mitigation for this issue is either not available or the currently available options don't meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base or stability.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6qtOut of support scope
Red Hat Enterprise Linux 6qt3Out of support scope
Red Hat Enterprise Linux 7qtOut of support scope
Red Hat Enterprise Linux 7qt3Out of support scope
Red Hat Enterprise Linux 9qt5-qtbaseNot affected
Red Hat Enterprise Linux 8adwaita-qtFixedRHSA-2021:417209.11.2021
Red Hat Enterprise Linux 8python-qt5FixedRHSA-2021:417209.11.2021
Red Hat Enterprise Linux 8qgnomeplatformFixedRHSA-2021:417209.11.2021
Red Hat Enterprise Linux 8qt5FixedRHSA-2021:417209.11.2021
Red Hat Enterprise Linux 8qt5-qt3dFixedRHSA-2021:417209.11.2021

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-125
https://bugzilla.redhat.com/show_bug.cgi?id=1931444qt: Out of bounds read in function QRadialFetchSimd from crafted svg file

7.1 High

CVSS3

Связанные уязвимости

CVSS3: 7.1
ubuntu
почти 3 года назад

A flaw was found in Qt. An out-of-bounds read vulnerability was found in QRadialFetchSimd in qt/qtbase/src/gui/painting/qdrawhelper_p.h in Qt/Qtbase. While rendering and displaying a crafted Scalable Vector Graphics (SVG) file this flaw may lead to an unauthorized memory access. The highest threat from this vulnerability is to data confidentiality and the application availability.

CVSS3: 7.1
nvd
почти 3 года назад

A flaw was found in Qt. An out-of-bounds read vulnerability was found in QRadialFetchSimd in qt/qtbase/src/gui/painting/qdrawhelper_p.h in Qt/Qtbase. While rendering and displaying a crafted Scalable Vector Graphics (SVG) file this flaw may lead to an unauthorized memory access. The highest threat from this vulnerability is to data confidentiality and the application availability.

CVSS3: 7.1
debian
почти 3 года назад

A flaw was found in Qt. An out-of-bounds read vulnerability was found ...

suse-cvrf
больше 3 лет назад

Security update for libqt5-qtsvg

suse-cvrf
больше 3 лет назад

Security update for libqt5-qtsvg

7.1 High

CVSS3