Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-SU-2023:3018-1

Опубликовано: 28 июл. 2023
Источник: suse-cvrf

Описание

Security update for libqt5-qtbase

This update for libqt5-qtbase fixes the following issues:

  • CVE-2023-34410: Fixed certificate validation does not always consider whether the root of a chain is a configured CA certificate (bsc#1211994).
  • CVE-2023-33285: Fixed buffer overflow in QDnsLookup (bsc#1211642).
  • CVE-2023-32762: Fixed Qt Network incorrectly parses the strict-transport-security (HSTS) header (bsc#1211797).
  • CVE-2023-38197: Fixed infinite loops in QXmlStreamReader(bsc#1213326).
  • CVE-2023-24607: Fixed Qt SQL ODBC driver plugin DOS (bsc#1209616).

Список пакетов

Image SLES15-SP5-SAP-Azure-3P
libQt5Core5-5.15.8+kde185-150500.4.8.1
libQt5DBus5-5.15.8+kde185-150500.4.8.1
libQt5Gui5-5.15.8+kde185-150500.4.8.1
libQt5Network5-5.15.8+kde185-150500.4.8.1
libQt5Widgets5-5.15.8+kde185-150500.4.8.1
Image SLES15-SP5-SAP-Azure-LI-BYOS
libQt5Core5-5.15.8+kde185-150500.4.8.1
libQt5DBus5-5.15.8+kde185-150500.4.8.1
libQt5Gui5-5.15.8+kde185-150500.4.8.1
libQt5Network5-5.15.8+kde185-150500.4.8.1
libQt5Widgets5-5.15.8+kde185-150500.4.8.1
Image SLES15-SP5-SAP-Azure-LI-BYOS-Production
libQt5Core5-5.15.8+kde185-150500.4.8.1
libQt5DBus5-5.15.8+kde185-150500.4.8.1
libQt5Gui5-5.15.8+kde185-150500.4.8.1
libQt5Network5-5.15.8+kde185-150500.4.8.1
libQt5Widgets5-5.15.8+kde185-150500.4.8.1
Image SLES15-SP5-SAP-Azure-VLI-BYOS
libQt5Core5-5.15.8+kde185-150500.4.8.1
libQt5DBus5-5.15.8+kde185-150500.4.8.1
libQt5Gui5-5.15.8+kde185-150500.4.8.1
libQt5Network5-5.15.8+kde185-150500.4.8.1
libQt5Widgets5-5.15.8+kde185-150500.4.8.1
Image SLES15-SP5-SAP-Azure-VLI-BYOS-Production
libQt5Core5-5.15.8+kde185-150500.4.8.1
libQt5DBus5-5.15.8+kde185-150500.4.8.1
libQt5Gui5-5.15.8+kde185-150500.4.8.1
libQt5Network5-5.15.8+kde185-150500.4.8.1
libQt5Widgets5-5.15.8+kde185-150500.4.8.1
Image SLES15-SP5-SAP-BYOS-Azure
libQt5Core5-5.15.8+kde185-150500.4.8.1
libQt5DBus5-5.15.8+kde185-150500.4.8.1
libQt5Gui5-5.15.8+kde185-150500.4.8.1
libQt5Network5-5.15.8+kde185-150500.4.8.1
libQt5Widgets5-5.15.8+kde185-150500.4.8.1
Image SLES15-SP5-SAP-BYOS-EC2
libQt5Core5-5.15.8+kde185-150500.4.8.1
libQt5DBus5-5.15.8+kde185-150500.4.8.1
libQt5Gui5-5.15.8+kde185-150500.4.8.1
libQt5Network5-5.15.8+kde185-150500.4.8.1
libQt5Widgets5-5.15.8+kde185-150500.4.8.1
Image SLES15-SP5-SAP-BYOS-GCE
libQt5Core5-5.15.8+kde185-150500.4.8.1
libQt5DBus5-5.15.8+kde185-150500.4.8.1
libQt5Gui5-5.15.8+kde185-150500.4.8.1
libQt5Network5-5.15.8+kde185-150500.4.8.1
libQt5Widgets5-5.15.8+kde185-150500.4.8.1
Image SLES15-SP5-SAP-Hardened-Azure
libQt5Core5-5.15.8+kde185-150500.4.8.1
libQt5DBus5-5.15.8+kde185-150500.4.8.1
libQt5Gui5-5.15.8+kde185-150500.4.8.1
libQt5Network5-5.15.8+kde185-150500.4.8.1
libQt5Widgets5-5.15.8+kde185-150500.4.8.1
Image SLES15-SP5-SAP-Hardened-BYOS-Azure
libQt5Core5-5.15.8+kde185-150500.4.8.1
libQt5DBus5-5.15.8+kde185-150500.4.8.1
libQt5Gui5-5.15.8+kde185-150500.4.8.1
libQt5Network5-5.15.8+kde185-150500.4.8.1
libQt5Widgets5-5.15.8+kde185-150500.4.8.1
Image SLES15-SP5-SAP-Hardened-BYOS-EC2
libQt5Core5-5.15.8+kde185-150500.4.8.1
libQt5DBus5-5.15.8+kde185-150500.4.8.1
libQt5Gui5-5.15.8+kde185-150500.4.8.1
libQt5Network5-5.15.8+kde185-150500.4.8.1
libQt5Widgets5-5.15.8+kde185-150500.4.8.1
Image SLES15-SP5-SAP-Hardened-BYOS-GCE
libQt5Core5-5.15.8+kde185-150500.4.8.1
libQt5DBus5-5.15.8+kde185-150500.4.8.1
libQt5Gui5-5.15.8+kde185-150500.4.8.1
libQt5Network5-5.15.8+kde185-150500.4.8.1
libQt5Widgets5-5.15.8+kde185-150500.4.8.1
Image SLES15-SP5-SAP-Hardened-GCE
libQt5Core5-5.15.8+kde185-150500.4.8.1
libQt5DBus5-5.15.8+kde185-150500.4.8.1
libQt5Gui5-5.15.8+kde185-150500.4.8.1
libQt5Network5-5.15.8+kde185-150500.4.8.1
libQt5Widgets5-5.15.8+kde185-150500.4.8.1
SUSE Linux Enterprise Module for Basesystem 15 SP5
libQt5Concurrent-devel-5.15.8+kde185-150500.4.8.1
libQt5Concurrent5-5.15.8+kde185-150500.4.8.1
libQt5Core-devel-5.15.8+kde185-150500.4.8.1
libQt5Core-private-headers-devel-5.15.8+kde185-150500.4.8.1
libQt5Core5-5.15.8+kde185-150500.4.8.1
libQt5DBus-devel-5.15.8+kde185-150500.4.8.1
libQt5DBus-private-headers-devel-5.15.8+kde185-150500.4.8.1
libQt5DBus5-5.15.8+kde185-150500.4.8.1
libQt5Gui-devel-5.15.8+kde185-150500.4.8.1
libQt5Gui-private-headers-devel-5.15.8+kde185-150500.4.8.1
libQt5Gui5-5.15.8+kde185-150500.4.8.1
libQt5KmsSupport-devel-static-5.15.8+kde185-150500.4.8.1
libQt5KmsSupport-private-headers-devel-5.15.8+kde185-150500.4.8.1
libQt5Network-devel-5.15.8+kde185-150500.4.8.1
libQt5Network-private-headers-devel-5.15.8+kde185-150500.4.8.1
libQt5Network5-5.15.8+kde185-150500.4.8.1
libQt5OpenGL-devel-5.15.8+kde185-150500.4.8.1
libQt5OpenGL-private-headers-devel-5.15.8+kde185-150500.4.8.1
libQt5OpenGL5-5.15.8+kde185-150500.4.8.1
libQt5PlatformHeaders-devel-5.15.8+kde185-150500.4.8.1
libQt5PlatformSupport-devel-static-5.15.8+kde185-150500.4.8.1
libQt5PlatformSupport-private-headers-devel-5.15.8+kde185-150500.4.8.1
libQt5PrintSupport-devel-5.15.8+kde185-150500.4.8.1
libQt5PrintSupport-private-headers-devel-5.15.8+kde185-150500.4.8.1
libQt5PrintSupport5-5.15.8+kde185-150500.4.8.1
libQt5Sql-devel-5.15.8+kde185-150500.4.8.1
libQt5Sql-private-headers-devel-5.15.8+kde185-150500.4.8.1
libQt5Sql5-5.15.8+kde185-150500.4.8.1
libQt5Sql5-sqlite-5.15.8+kde185-150500.4.8.1
libQt5Test-devel-5.15.8+kde185-150500.4.8.1
libQt5Test-private-headers-devel-5.15.8+kde185-150500.4.8.1
libQt5Test5-5.15.8+kde185-150500.4.8.1
libQt5Widgets-devel-5.15.8+kde185-150500.4.8.1
libQt5Widgets-private-headers-devel-5.15.8+kde185-150500.4.8.1
libQt5Widgets5-5.15.8+kde185-150500.4.8.1
libQt5Xml-devel-5.15.8+kde185-150500.4.8.1
libQt5Xml5-5.15.8+kde185-150500.4.8.1
libqt5-qtbase-common-devel-5.15.8+kde185-150500.4.8.1
libqt5-qtbase-devel-5.15.8+kde185-150500.4.8.1
libqt5-qtbase-private-headers-devel-5.15.8+kde185-150500.4.8.1
SUSE Linux Enterprise Module for Desktop Applications 15 SP5
libQt5OpenGLExtensions-devel-static-5.15.8+kde185-150500.4.8.1
libQt5Sql5-mysql-5.15.8+kde185-150500.4.8.1
libQt5Sql5-postgresql-5.15.8+kde185-150500.4.8.1
libQt5Sql5-unixODBC-5.15.8+kde185-150500.4.8.1
libqt5-qtbase-platformtheme-gtk3-5.15.8+kde185-150500.4.8.1
openSUSE Leap 15.5
libQt5Bootstrap-devel-static-5.15.8+kde185-150500.4.8.1
libQt5Bootstrap-devel-static-32bit-5.15.8+kde185-150500.4.8.1
libQt5Concurrent-devel-5.15.8+kde185-150500.4.8.1
libQt5Concurrent-devel-32bit-5.15.8+kde185-150500.4.8.1
libQt5Concurrent5-5.15.8+kde185-150500.4.8.1
libQt5Concurrent5-32bit-5.15.8+kde185-150500.4.8.1
libQt5Core-devel-5.15.8+kde185-150500.4.8.1
libQt5Core-devel-32bit-5.15.8+kde185-150500.4.8.1
libQt5Core-private-headers-devel-5.15.8+kde185-150500.4.8.1
libQt5Core5-5.15.8+kde185-150500.4.8.1
libQt5Core5-32bit-5.15.8+kde185-150500.4.8.1
libQt5DBus-devel-5.15.8+kde185-150500.4.8.1
libQt5DBus-devel-32bit-5.15.8+kde185-150500.4.8.1
libQt5DBus-private-headers-devel-5.15.8+kde185-150500.4.8.1
libQt5DBus5-5.15.8+kde185-150500.4.8.1
libQt5DBus5-32bit-5.15.8+kde185-150500.4.8.1
libQt5Gui-devel-5.15.8+kde185-150500.4.8.1
libQt5Gui-devel-32bit-5.15.8+kde185-150500.4.8.1
libQt5Gui-private-headers-devel-5.15.8+kde185-150500.4.8.1
libQt5Gui5-5.15.8+kde185-150500.4.8.1
libQt5Gui5-32bit-5.15.8+kde185-150500.4.8.1
libQt5KmsSupport-devel-static-5.15.8+kde185-150500.4.8.1
libQt5KmsSupport-private-headers-devel-5.15.8+kde185-150500.4.8.1
libQt5Network-devel-5.15.8+kde185-150500.4.8.1
libQt5Network-devel-32bit-5.15.8+kde185-150500.4.8.1
libQt5Network-private-headers-devel-5.15.8+kde185-150500.4.8.1
libQt5Network5-5.15.8+kde185-150500.4.8.1
libQt5Network5-32bit-5.15.8+kde185-150500.4.8.1
libQt5OpenGL-devel-5.15.8+kde185-150500.4.8.1
libQt5OpenGL-devel-32bit-5.15.8+kde185-150500.4.8.1
libQt5OpenGL-private-headers-devel-5.15.8+kde185-150500.4.8.1
libQt5OpenGL5-5.15.8+kde185-150500.4.8.1
libQt5OpenGL5-32bit-5.15.8+kde185-150500.4.8.1
libQt5OpenGLExtensions-devel-static-5.15.8+kde185-150500.4.8.1
libQt5OpenGLExtensions-devel-static-32bit-5.15.8+kde185-150500.4.8.1
libQt5PlatformHeaders-devel-5.15.8+kde185-150500.4.8.1
libQt5PlatformSupport-devel-static-5.15.8+kde185-150500.4.8.1
libQt5PlatformSupport-devel-static-32bit-5.15.8+kde185-150500.4.8.1
libQt5PlatformSupport-private-headers-devel-5.15.8+kde185-150500.4.8.1
libQt5PrintSupport-devel-5.15.8+kde185-150500.4.8.1
libQt5PrintSupport-devel-32bit-5.15.8+kde185-150500.4.8.1
libQt5PrintSupport-private-headers-devel-5.15.8+kde185-150500.4.8.1
libQt5PrintSupport5-5.15.8+kde185-150500.4.8.1
libQt5PrintSupport5-32bit-5.15.8+kde185-150500.4.8.1
libQt5Sql-devel-5.15.8+kde185-150500.4.8.1
libQt5Sql-devel-32bit-5.15.8+kde185-150500.4.8.1
libQt5Sql-private-headers-devel-5.15.8+kde185-150500.4.8.1
libQt5Sql5-5.15.8+kde185-150500.4.8.1
libQt5Sql5-32bit-5.15.8+kde185-150500.4.8.1
libQt5Sql5-mysql-5.15.8+kde185-150500.4.8.1
libQt5Sql5-mysql-32bit-5.15.8+kde185-150500.4.8.1
libQt5Sql5-postgresql-5.15.8+kde185-150500.4.8.1
libQt5Sql5-postgresql-32bit-5.15.8+kde185-150500.4.8.1
libQt5Sql5-sqlite-5.15.8+kde185-150500.4.8.1
libQt5Sql5-sqlite-32bit-5.15.8+kde185-150500.4.8.1
libQt5Sql5-unixODBC-5.15.8+kde185-150500.4.8.1
libQt5Sql5-unixODBC-32bit-5.15.8+kde185-150500.4.8.1
libQt5Test-devel-5.15.8+kde185-150500.4.8.1
libQt5Test-devel-32bit-5.15.8+kde185-150500.4.8.1
libQt5Test-private-headers-devel-5.15.8+kde185-150500.4.8.1
libQt5Test5-5.15.8+kde185-150500.4.8.1
libQt5Test5-32bit-5.15.8+kde185-150500.4.8.1
libQt5Widgets-devel-5.15.8+kde185-150500.4.8.1
libQt5Widgets-devel-32bit-5.15.8+kde185-150500.4.8.1
libQt5Widgets-private-headers-devel-5.15.8+kde185-150500.4.8.1
libQt5Widgets5-5.15.8+kde185-150500.4.8.1
libQt5Widgets5-32bit-5.15.8+kde185-150500.4.8.1
libQt5Xml-devel-5.15.8+kde185-150500.4.8.1
libQt5Xml-devel-32bit-5.15.8+kde185-150500.4.8.1
libQt5Xml5-5.15.8+kde185-150500.4.8.1
libQt5Xml5-32bit-5.15.8+kde185-150500.4.8.1
libqt5-qtbase-common-devel-5.15.8+kde185-150500.4.8.1
libqt5-qtbase-devel-5.15.8+kde185-150500.4.8.1
libqt5-qtbase-examples-5.15.8+kde185-150500.4.8.1
libqt5-qtbase-examples-32bit-5.15.8+kde185-150500.4.8.1
libqt5-qtbase-platformtheme-gtk3-5.15.8+kde185-150500.4.8.1
libqt5-qtbase-platformtheme-xdgdesktopportal-5.15.8+kde185-150500.4.8.1
libqt5-qtbase-private-headers-devel-5.15.8+kde185-150500.4.8.1

Описание

Qt before 6.4.3 allows a denial of service via a crafted string when the SQL ODBC driver plugin is used and the size of SQLTCHAR is 4. The affected versions are 5.x before 5.15.13, 6.x before 6.2.8, and 6.3.x before 6.4.3.


Затронутые продукты
Image SLES15-SP5-SAP-Azure-3P:libQt5Core5-5.15.8+kde185-150500.4.8.1
Image SLES15-SP5-SAP-Azure-3P:libQt5DBus5-5.15.8+kde185-150500.4.8.1
Image SLES15-SP5-SAP-Azure-3P:libQt5Gui5-5.15.8+kde185-150500.4.8.1
Image SLES15-SP5-SAP-Azure-3P:libQt5Network5-5.15.8+kde185-150500.4.8.1

Ссылки

Описание

An issue was discovered in Qt before 5.15.14, 6.x before 6.2.9, and 6.3.x through 6.5.x before 6.5.1. Qt Network incorrectly parses the strict-transport-security (HSTS) header, allowing unencrypted connections to be established, even when explicitly prohibited by the server. This happens if the case used for this header does not exactly match.


Затронутые продукты
Image SLES15-SP5-SAP-Azure-3P:libQt5Core5-5.15.8+kde185-150500.4.8.1
Image SLES15-SP5-SAP-Azure-3P:libQt5DBus5-5.15.8+kde185-150500.4.8.1
Image SLES15-SP5-SAP-Azure-3P:libQt5Gui5-5.15.8+kde185-150500.4.8.1
Image SLES15-SP5-SAP-Azure-3P:libQt5Network5-5.15.8+kde185-150500.4.8.1

Ссылки

Описание

An issue was discovered in Qt 5.x before 5.15.14, 6.x before 6.2.9, and 6.3.x through 6.5.x before 6.5.1. QDnsLookup has a buffer over-read via a crafted reply from a DNS server.


Затронутые продукты
Image SLES15-SP5-SAP-Azure-3P:libQt5Core5-5.15.8+kde185-150500.4.8.1
Image SLES15-SP5-SAP-Azure-3P:libQt5DBus5-5.15.8+kde185-150500.4.8.1
Image SLES15-SP5-SAP-Azure-3P:libQt5Gui5-5.15.8+kde185-150500.4.8.1
Image SLES15-SP5-SAP-Azure-3P:libQt5Network5-5.15.8+kde185-150500.4.8.1

Ссылки

Описание

An issue was discovered in Qt before 5.15.15, 6.x before 6.2.9, and 6.3.x through 6.5.x before 6.5.2. Certificate validation for TLS does not always consider whether the root of a chain is a configured CA certificate.


Затронутые продукты
Image SLES15-SP5-SAP-Azure-3P:libQt5Core5-5.15.8+kde185-150500.4.8.1
Image SLES15-SP5-SAP-Azure-3P:libQt5DBus5-5.15.8+kde185-150500.4.8.1
Image SLES15-SP5-SAP-Azure-3P:libQt5Gui5-5.15.8+kde185-150500.4.8.1
Image SLES15-SP5-SAP-Azure-3P:libQt5Network5-5.15.8+kde185-150500.4.8.1

Ссылки

Описание

An issue was discovered in Qt before 5.15.15, 6.x before 6.2.10, and 6.3.x through 6.5.x before 6.5.3. There are infinite loops in recursive entity expansion.


Затронутые продукты
Image SLES15-SP5-SAP-Azure-3P:libQt5Core5-5.15.8+kde185-150500.4.8.1
Image SLES15-SP5-SAP-Azure-3P:libQt5DBus5-5.15.8+kde185-150500.4.8.1
Image SLES15-SP5-SAP-Azure-3P:libQt5Gui5-5.15.8+kde185-150500.4.8.1
Image SLES15-SP5-SAP-Azure-3P:libQt5Network5-5.15.8+kde185-150500.4.8.1

Ссылки
Уязвимость SUSE-SU-2023:3018-1