ALT-BU-2015-2464-1
Branch sisyphus update bulletin.
Closed vulnerabilities
Modified: 2024-11-21
CVE-2015-1858
Multiple buffer overflows in gui/image/qbmphandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remote attackers to cause a denial of service (segmentation fault and crash) and possibly execute arbitrary code via a crafted BMP image.
- FEDORA-2015-6114
- FEDORA-2015-6114
- FEDORA-2015-6123
- FEDORA-2015-6123
- FEDORA-2015-6315
- FEDORA-2015-6315
- FEDORA-2015-6364
- FEDORA-2015-6364
- FEDORA-2015-6252
- FEDORA-2015-6252
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- 74309
- 74309
- USN-2626-1
- USN-2626-1
- https://codereview.qt-project.org/#/c/108312/
- https://codereview.qt-project.org/#/c/108312/
- GLSA-201603-10
- GLSA-201603-10
Modified: 2024-11-21
CVE-2015-1859
Multiple buffer overflows in plugins/imageformats/ico/qicohandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remote attackers to cause a denial of service (segmentation fault and crash) and possibly execute arbitrary code via a crafted ICO image.
- FEDORA-2015-6114
- FEDORA-2015-6114
- FEDORA-2015-6123
- FEDORA-2015-6123
- FEDORA-2015-6315
- FEDORA-2015-6315
- FEDORA-2015-6364
- FEDORA-2015-6364
- FEDORA-2015-6252
- FEDORA-2015-6252
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- 74307
- 74307
- 74310
- 74310
- USN-2626-1
- USN-2626-1
- GLSA-201603-10
- GLSA-201603-10
Modified: 2024-11-21
CVE-2015-1860
Multiple buffer overflows in gui/image/qgifhandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remote attackers to cause a denial of service (segmentation fault) and possibly execute arbitrary code via a crafted GIF image.
- FEDORA-2015-6114
- FEDORA-2015-6114
- FEDORA-2015-6123
- FEDORA-2015-6123
- FEDORA-2015-6613
- FEDORA-2015-6613
- FEDORA-2015-6315
- FEDORA-2015-6315
- FEDORA-2015-6364
- FEDORA-2015-6364
- FEDORA-2015-6252
- FEDORA-2015-6252
- FEDORA-2015-6661
- FEDORA-2015-6661
- FEDORA-2015-6573
- FEDORA-2015-6573
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- 74302
- 74302
- USN-2626-1
- USN-2626-1
- https://codereview.qt-project.org/#/c/108248/
- https://codereview.qt-project.org/#/c/108248/
- GLSA-201603-10
- GLSA-201603-10
Closed vulnerabilities
Modified: 2024-11-21
CVE-2015-3622
The _asn1_extract_der_octet function in lib/decoding.c in GNU Libtasn1 before 4.5 allows remote attackers to cause a denial of service (out-of-bounds heap read) via a crafted certificate.
- FEDORA-2015-7288
- FEDORA-2015-7288
- openSUSE-SU-2015:1372
- openSUSE-SU-2015:1372
- openSUSE-SU-2016:1567
- openSUSE-SU-2016:1567
- openSUSE-SU-2016:1674
- openSUSE-SU-2016:1674
- http://packetstormsecurity.com/files/131711/libtasn1-Heap-Overflow.html
- http://packetstormsecurity.com/files/131711/libtasn1-Heap-Overflow.html
- 20150430 Heap overflow / invalid read in Libtasn1 before 4.5 (TFPA 005/2015)
- 20150430 Heap overflow / invalid read in Libtasn1 before 4.5 (TFPA 005/2015)
- DSA-3256
- DSA-3256
- MDVSA-2015:232
- MDVSA-2015:232
- 74419
- 74419
- 1032246
- 1032246
- USN-2604-1
- USN-2604-1
- RHSA-2017:1860
- RHSA-2017:1860
- [help-libtasn1] 20150429 GNU Libtasn1 4.5 released
- [help-libtasn1] 20150429 GNU Libtasn1 4.5 released
- GLSA-201509-04
- GLSA-201509-04