Описание
Security update for libqt5-qtsvg
This update for libqt5-qtsvg fixes the following issues:
Security issues fixed:
- CVE-2018-19869: Fixed Denial of Service when parsing malformed URL reference (bsc#1118599)
This update was imported from the SUSE:SLE-15:Update update project.
Список пакетов
openSUSE Leap 15.0
libQt5Svg5-5.9.4-lp150.2.3.2
libQt5Svg5-32bit-5.9.4-lp150.2.3.2
libqt5-qtsvg-devel-5.9.4-lp150.2.3.2
libqt5-qtsvg-devel-32bit-5.9.4-lp150.2.3.2
libqt5-qtsvg-examples-5.9.4-lp150.2.3.2
libqt5-qtsvg-private-headers-devel-5.9.4-lp150.2.3.2
Ссылки
- E-Mail link for openSUSE-SU-2019:1116-1
- SUSE Security Ratings
- SUSE Bug 1118599
- SUSE CVE CVE-2018-19869 page
Описание
An issue was discovered in Qt before 5.11.3. A malformed SVG image causes a segmentation fault in qsvghandler.cpp.
Затронутые продукты
openSUSE Leap 15.0:libQt5Svg5-32bit-5.9.4-lp150.2.3.2
openSUSE Leap 15.0:libQt5Svg5-5.9.4-lp150.2.3.2
openSUSE Leap 15.0:libqt5-qtsvg-devel-32bit-5.9.4-lp150.2.3.2
openSUSE Leap 15.0:libqt5-qtsvg-devel-5.9.4-lp150.2.3.2
Ссылки
- CVE-2018-19869
- SUSE Bug 1118599