Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

rocky логотип

RLSA-2021:4172

Опубликовано: 09 нояб. 2021
Источник: rocky
Оценка: SEVERITY_MODERATE

Описание

Moderate: qt5 security, bug fix, and enhancement update

Qt is a software toolkit for developing applications. The following packages have been upgraded to a later upstream version: adwaita-qt (1.2.1), python-qt5 (5.15.0), qgnomeplatform (0.7.1), qt5 (5.15.2), qt5-qt3d (5.15.2), qt5-qtbase (5.15.2), qt5-qtconnectivity (5.15.2), qt5-qtdeclarative (5.15.2), qt5-qtdoc (5.15.2), qt5-qtgraphicaleffects (5.15.2), qt5-qtimageformats (5.15.2), qt5-qtlocation (5.15.2), qt5-qtmultimedia (5.15.2), qt5-qtquickcontrols (5.15.2), qt5-qtquickcontrols2 (5.15.2), qt5-qtscript (5.15.2), qt5-qtsensors (5.15.2), qt5-qtserialbus (5.15.2), qt5-qtserialport (5.15.2), qt5-qtsvg (5.15.2), qt5-qttools (5.15.2), qt5-qttranslations (5.15.2), qt5-qtwayland (5.15.2), qt5-qtwebchannel (5.15.2), qt5-qtwebsockets (5.15.2), qt5-qtx11extras (5.15.2), qt5-qtxmlpatterns (5.15.2), sip (4.19.24). (BZ#1928156) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Rocky Linux 8.5 Release Notes linked from the References section.

Затронутые продукты

  • Rocky Linux 8

НаименованиеАрхитектураРелизRPM
adwaita-qt5i6863.el8adwaita-qt5-1.2.1-3.el8.i686.rpm
adwaita-qt5x86_643.el8adwaita-qt5-1.2.1-3.el8.x86_64.rpm
libadwaita-qt5i6863.el8libadwaita-qt5-1.2.1-3.el8.i686.rpm
libadwaita-qt5x86_643.el8libadwaita-qt5-1.2.1-3.el8.x86_64.rpm
python3-pyqt5-sipx86_642.el8python3-pyqt5-sip-4.19.24-2.el8.x86_64.rpm
python3-qt5i6862.el8python3-qt5-5.15.0-2.el8.i686.rpm
python3-qt5x86_642.el8python3-qt5-5.15.0-2.el8.x86_64.rpm
python3-qt5-basei6862.el8python3-qt5-base-5.15.0-2.el8.i686.rpm
python3-qt5-basex86_642.el8python3-qt5-base-5.15.0-2.el8.x86_64.rpm
python3-wx-siplibx86_642.el8python3-wx-siplib-4.19.24-2.el8.x86_64.rpm

Показывать по

Связанные CVE

Связанные уязвимости

CVSS3: 7.1
ubuntu
почти 3 года назад

A flaw was found in Qt. An out-of-bounds read vulnerability was found in QRadialFetchSimd in qt/qtbase/src/gui/painting/qdrawhelper_p.h in Qt/Qtbase. While rendering and displaying a crafted Scalable Vector Graphics (SVG) file this flaw may lead to an unauthorized memory access. The highest threat from this vulnerability is to data confidentiality and the application availability.

CVSS3: 7.1
redhat
больше 4 лет назад

A flaw was found in Qt. An out-of-bounds read vulnerability was found in QRadialFetchSimd in qt/qtbase/src/gui/painting/qdrawhelper_p.h in Qt/Qtbase. While rendering and displaying a crafted Scalable Vector Graphics (SVG) file this flaw may lead to an unauthorized memory access. The highest threat from this vulnerability is to data confidentiality and the application availability.

CVSS3: 7.1
nvd
почти 3 года назад

A flaw was found in Qt. An out-of-bounds read vulnerability was found in QRadialFetchSimd in qt/qtbase/src/gui/painting/qdrawhelper_p.h in Qt/Qtbase. While rendering and displaying a crafted Scalable Vector Graphics (SVG) file this flaw may lead to an unauthorized memory access. The highest threat from this vulnerability is to data confidentiality and the application availability.

CVSS3: 7.1
debian
почти 3 года назад

A flaw was found in Qt. An out-of-bounds read vulnerability was found ...

suse-cvrf
больше 3 лет назад

Security update for libqt5-qtsvg