CVE-2020-13962
- EPSS 1.57%
- Veröffentlicht 09.06.2020 00:15:10
- Zuletzt bearbeitet 21.11.2024 05:02:14
Qt 5.12.2 through 5.14.2, as used in unofficial builds of Mumble 1.3.0 and other products, mishandles OpenSSL's error queue, which can cause a denial of service to QSslSocket users. Because errors leak in unrelated TLS sessions, an unrelated session ...
CVE-2020-12267
- EPSS 0.47%
- Veröffentlicht 27.04.2020 02:15:12
- Zuletzt bearbeitet 21.11.2024 04:59:24
setMarkdown in Qt before 5.14.2 has a use-after-free related to QTextMarkdownImporter::insertBlock.
CVE-2018-21035
- EPSS 0.47%
- Veröffentlicht 28.02.2020 21:15:12
- Zuletzt bearbeitet 21.11.2024 04:02:44
In Qt through 5.14.1, the WebSocket implementation accepts up to 2GB for frames and 2GB for messages. Smaller limits cannot be configured. This makes it easier for attackers to cause a denial of service (memory consumption).
CVE-2015-9541
- EPSS 0.9%
- Veröffentlicht 24.01.2020 22:15:12
- Zuletzt bearbeitet 21.11.2024 02:40:53
Qt through 5.14 allows an exponential XML entity expansion attack via a crafted SVG document that is mishandled in QXmlStreamReader, a related issue to CVE-2003-1564.
CVE-2018-19872
- EPSS 0.28%
- Veröffentlicht 21.03.2019 16:00:32
- Zuletzt bearbeitet 21.11.2024 03:58:43
An issue was discovered in Qt 5.11. A malformed PPM image causes a division by zero and a crash in qppmhandler.cpp.
CVE-2018-19873
- EPSS 8.23%
- Veröffentlicht 26.12.2018 21:29:02
- Zuletzt bearbeitet 11.02.2025 20:11:38
An issue was discovered in Qt before 5.11.3. QBmpHandler has a buffer overflow via BMP data.
CVE-2018-19871
- EPSS 0.86%
- Veröffentlicht 26.12.2018 21:29:02
- Zuletzt bearbeitet 21.11.2024 03:58:43
An issue was discovered in Qt before 5.11.3. There is QTgaFile Uncontrolled Resource Consumption.
CVE-2018-19870
- EPSS 2.17%
- Veröffentlicht 26.12.2018 21:29:02
- Zuletzt bearbeitet 21.11.2024 03:58:43
An issue was discovered in Qt before 5.11.3. A malformed GIF image causes a NULL pointer dereference in QGifHandler resulting in a segmentation fault.
CVE-2018-19869
- EPSS 0.65%
- Veröffentlicht 26.12.2018 21:29:02
- Zuletzt bearbeitet 21.11.2024 03:58:43
An issue was discovered in Qt before 5.11.3. A malformed SVG image causes a segmentation fault in qsvghandler.cpp.
CVE-2018-15518
- EPSS 2.14%
- Veröffentlicht 26.12.2018 21:29:00
- Zuletzt bearbeitet 21.11.2024 03:50:59
QXmlStream in Qt 5.x before 5.11.3 has a double-free or corruption during parsing of a specially crafted illegal XML document.