CVE-2021-3481
- EPSS 0.04%
- Veröffentlicht 22.08.2022 15:15:13
- Zuletzt bearbeitet 21.11.2024 06:21:38
A flaw was found in Qt. An out-of-bounds read vulnerability was found in QRadialFetchSimd in qt/qtbase/src/gui/painting/qdrawhelper_p.h in Qt/Qtbase. While rendering and displaying a crafted Scalable Vector Graphics (SVG) file this flaw may lead to a...
CVE-2022-25634
- EPSS 0.45%
- Veröffentlicht 02.03.2022 15:15:08
- Zuletzt bearbeitet 21.11.2024 06:52:28
Qt through 5.15.8 and 6.x through 6.2.3 can load system library files from an unintended working directory.
CVE-2022-25255
- EPSS 0.06%
- Veröffentlicht 16.02.2022 19:15:09
- Zuletzt bearbeitet 21.11.2024 06:51:53
In Qt 5.9.x through 5.15.x before 5.15.9 and 6.x before 6.2.4 on Linux and UNIX, QProcess could execute a binary from the current working directory when not found in the PATH.
CVE-2021-38593
- EPSS 0.69%
- Veröffentlicht 12.08.2021 02:15:06
- Zuletzt bearbeitet 21.11.2024 06:17:36
Qt 5.x before 5.15.6 and 6.x through 6.1.2 has an out-of-bounds write in QOutlineMapper::convertPath (called from QRasterPaintEngine::fill and QPaintEngineEx::stroke).
CVE-2020-24742
- EPSS 0.57%
- Veröffentlicht 09.08.2021 22:15:08
- Zuletzt bearbeitet 21.11.2024 05:16:00
An issue has been fixed in Qt versions 5.14.0 where QPluginLoader attempts to load plugins relative to the working directory, allowing attackers to execute arbitrary code via crafted files.
CVE-2020-0569
- EPSS 0.3%
- Veröffentlicht 23.11.2020 17:15:12
- Zuletzt bearbeitet 21.11.2024 04:53:46
Out of bounds write in Intel(R) PROSet/Wireless WiFi products on Windows 10 may allow an authenticated user to potentially enable denial of service via local access.
CVE-2020-0570
- EPSS 0.24%
- Veröffentlicht 14.09.2020 19:15:10
- Zuletzt bearbeitet 21.11.2024 04:53:46
Uncontrolled search path in the QT Library before 5.14.0, 5.12.7 and 5.9.10 may allow an authenticated user to potentially enable elevation of privilege via local access.
CVE-2020-17507
- EPSS 2.6%
- Veröffentlicht 12.08.2020 18:15:17
- Zuletzt bearbeitet 21.11.2024 05:08:15
An issue was discovered in Qt through 5.12.9, and 5.13.x through 5.15.x before 5.15.1. read_xbm_body in gui/image/qxbmhandler.cpp has a buffer over-read.
CVE-2020-13962
- EPSS 1.57%
- Veröffentlicht 09.06.2020 00:15:10
- Zuletzt bearbeitet 21.11.2024 05:02:14
Qt 5.12.2 through 5.14.2, as used in unofficial builds of Mumble 1.3.0 and other products, mishandles OpenSSL's error queue, which can cause a denial of service to QSslSocket users. Because errors leak in unrelated TLS sessions, an unrelated session ...
CVE-2020-12267
- EPSS 0.47%
- Veröffentlicht 27.04.2020 02:15:12
- Zuletzt bearbeitet 21.11.2024 04:59:24
setMarkdown in Qt before 5.14.2 has a use-after-free related to QTextMarkdownImporter::insertBlock.