Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2025-12385

Опубликовано: 03 дек. 2025
Источник: ubuntu
Приоритет: medium
EPSS Низкий

Описание

Allocation of Resources Without Limits or Throttling, Improper Validation of Specified Quantity in Input vulnerability in The Qt Company Qt on Windows, MacOS, Linux, iOS, Android, x86, ARM, 64 bit, 32 bit allows Excessive Allocation. This issue affects users of the Text component in Qt Quick. Missing validation of the width and height in the tag could cause an application to become unresponsive. This issue affects Qt: from 5.0.0 through 6.5.10, from 6.6.0 through 6.8.5, from 6.9.0 through 6.10.0.

РелизСтатусПримечание
devel

needed

esm-apps/jammy

needed

esm-apps/noble

needed

esm-apps/resolute

needed

jammy

needed

noble

needed

plucky

ignored

end of life, was needs-triage
questing

ignored

end of life, was needed
resolute

needed

upstream

released

Показывать по

РелизСтатусПримечание
devel

not-affected

5.15.17+dfsg-4
esm-apps/bionic

ignored

changes too intrusive
esm-apps/focal

released

5.12.8-0ubuntu1+esm1
esm-apps/jammy

released

5.15.3+dfsg-1ubuntu0.1~esm1
esm-apps/noble

released

5.15.13+dfsg-1ubuntu0.1+esm1
esm-apps/resolute

not-affected

5.15.17+dfsg-4
esm-infra-legacy/xenial

ignored

changes too intrusive
esm-infra/xenial

ignored

end of ESM support, was needed
jammy

needed

noble

needed

Показывать по

РелизСтатусПримечание
devel

needed

esm-apps-legacy/xenial

needed

esm-apps/focal

needed

esm-apps/jammy

needed

esm-apps/noble

needed

esm-apps/resolute

needed

esm-apps/xenial

ignored

end of ESM support, was needed
jammy

needed

noble

needed

plucky

ignored

end of life, was needs-triage

Показывать по

EPSS

Процентиль: 23%
0.00308
Низкий

Связанные уязвимости

nvd
8 месяцев назад

Allocation of Resources Without Limits or Throttling, Improper Validation of Specified Quantity in Input vulnerability in The Qt Company Qt on Windows, MacOS, Linux, iOS, Android, x86, ARM, 64 bit, 32 bit allows Excessive Allocation. This issue affects users of the Text component in Qt Quick. Missing validation of the width and height in the <img> tag could cause an application to become unresponsive. This issue affects Qt: from 5.0.0 through 6.5.10, from 6.6.0 through 6.8.5, from 6.9.0 through 6.10.0.

msrc
8 месяцев назад

Improper validation of <img> tag size in Text component parser

debian
8 месяцев назад

Allocation of Resources Without Limits or Throttling, Improper Validat ...

github
8 месяцев назад

Allocation of Resources Without Limits or Throttling, Improper Validation of Specified Quantity in Input vulnerability in The Qt Company Qt on Windows, MacOS, Linux, iOS, Android, x86, ARM, 64 bit, 32 bit allows Excessive Allocation. This issue affects users of the Text component in Qt Quick. Missing validation of the width and height in the <img> tag could cause an application to become unresponsive. This issue affects Qt: from 5.0.0 through 6.5.10, from 6.6.0 through 6.8.5, from 6.9.0 through 6.10.0.

CVSS3: 4.3
fstec
9 месяцев назад

Уязвимость тега <img> набора плагинов QML и Qt Quick для Qt6 Qt6 Declarative, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 23%
0.00308
Низкий