ALT-BU-2015-2486-1
Branch sisyphus update bulletin.
Package qt5-script updated to version 5.4.2-alt1 for branch sisyphus in task 145230.
Closed vulnerabilities
Modified: 2024-11-21
CVE-2015-0295
The BMP decoder in QtGui in QT before 5.5 does not properly calculate the masks used to extract the color components, which allows remote attackers to cause a denial of service (divide-by-zero and crash) via a crafted BMP file.
- FEDORA-2015-2895
- FEDORA-2015-2895
- FEDORA-2015-2897
- FEDORA-2015-2897
- FEDORA-2015-2866
- FEDORA-2015-2866
- FEDORA-2015-2869
- FEDORA-2015-2869
- FEDORA-2015-2886
- FEDORA-2015-2886
- FEDORA-2015-2901
- FEDORA-2015-2901
- openSUSE-SU-2015:0573
- openSUSE-SU-2015:0573
- [Announce] 20150227 Qt Security Advisory: DoS vulnerability in the BMP image handler
- [Announce] 20150227 Qt Security Advisory: DoS vulnerability in the BMP image handler
- 73029
- 73029
- USN-2626-1
- USN-2626-1
Modified: 2024-11-21
CVE-2015-1858
Multiple buffer overflows in gui/image/qbmphandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remote attackers to cause a denial of service (segmentation fault and crash) and possibly execute arbitrary code via a crafted BMP image.
- FEDORA-2015-6114
- FEDORA-2015-6114
- FEDORA-2015-6123
- FEDORA-2015-6123
- FEDORA-2015-6315
- FEDORA-2015-6315
- FEDORA-2015-6364
- FEDORA-2015-6364
- FEDORA-2015-6252
- FEDORA-2015-6252
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- 74309
- 74309
- USN-2626-1
- USN-2626-1
- https://codereview.qt-project.org/#/c/108312/
- https://codereview.qt-project.org/#/c/108312/
- GLSA-201603-10
- GLSA-201603-10
Modified: 2024-11-21
CVE-2015-1859
Multiple buffer overflows in plugins/imageformats/ico/qicohandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remote attackers to cause a denial of service (segmentation fault and crash) and possibly execute arbitrary code via a crafted ICO image.
- FEDORA-2015-6114
- FEDORA-2015-6114
- FEDORA-2015-6123
- FEDORA-2015-6123
- FEDORA-2015-6315
- FEDORA-2015-6315
- FEDORA-2015-6364
- FEDORA-2015-6364
- FEDORA-2015-6252
- FEDORA-2015-6252
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- 74307
- 74307
- 74310
- 74310
- USN-2626-1
- USN-2626-1
- GLSA-201603-10
- GLSA-201603-10
Modified: 2024-11-21
CVE-2015-1860
Multiple buffer overflows in gui/image/qgifhandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remote attackers to cause a denial of service (segmentation fault) and possibly execute arbitrary code via a crafted GIF image.
- FEDORA-2015-6114
- FEDORA-2015-6114
- FEDORA-2015-6123
- FEDORA-2015-6123
- FEDORA-2015-6613
- FEDORA-2015-6613
- FEDORA-2015-6315
- FEDORA-2015-6315
- FEDORA-2015-6364
- FEDORA-2015-6364
- FEDORA-2015-6252
- FEDORA-2015-6252
- FEDORA-2015-6661
- FEDORA-2015-6661
- FEDORA-2015-6573
- FEDORA-2015-6573
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- 74302
- 74302
- USN-2626-1
- USN-2626-1
- https://codereview.qt-project.org/#/c/108248/
- https://codereview.qt-project.org/#/c/108248/
- GLSA-201603-10
- GLSA-201603-10
Modified: 2024-11-21
CVE-2015-7298
ownCloud Desktop Client before 2.0.1, when compiled with a Qt release after 5.3.x, does not call QNetworkReply::ignoreSslErrors with the list of errors to be ignored, which makes it easier for remote attackers to conduct man-in-the-middle (MITM) attacks by leveraging a server using a self-signed certificate. NOTE: this vulnerability exists because of a partial CVE-2015-4456 regression.
Package qt5-quick1 updated to version 5.4.2-alt1 for branch sisyphus in task 145230.
Closed vulnerabilities
Modified: 2024-11-21
CVE-2015-0295
The BMP decoder in QtGui in QT before 5.5 does not properly calculate the masks used to extract the color components, which allows remote attackers to cause a denial of service (divide-by-zero and crash) via a crafted BMP file.
- FEDORA-2015-2895
- FEDORA-2015-2895
- FEDORA-2015-2897
- FEDORA-2015-2897
- FEDORA-2015-2866
- FEDORA-2015-2866
- FEDORA-2015-2869
- FEDORA-2015-2869
- FEDORA-2015-2886
- FEDORA-2015-2886
- FEDORA-2015-2901
- FEDORA-2015-2901
- openSUSE-SU-2015:0573
- openSUSE-SU-2015:0573
- [Announce] 20150227 Qt Security Advisory: DoS vulnerability in the BMP image handler
- [Announce] 20150227 Qt Security Advisory: DoS vulnerability in the BMP image handler
- 73029
- 73029
- USN-2626-1
- USN-2626-1
Modified: 2024-11-21
CVE-2015-1858
Multiple buffer overflows in gui/image/qbmphandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remote attackers to cause a denial of service (segmentation fault and crash) and possibly execute arbitrary code via a crafted BMP image.
- FEDORA-2015-6114
- FEDORA-2015-6114
- FEDORA-2015-6123
- FEDORA-2015-6123
- FEDORA-2015-6315
- FEDORA-2015-6315
- FEDORA-2015-6364
- FEDORA-2015-6364
- FEDORA-2015-6252
- FEDORA-2015-6252
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- 74309
- 74309
- USN-2626-1
- USN-2626-1
- https://codereview.qt-project.org/#/c/108312/
- https://codereview.qt-project.org/#/c/108312/
- GLSA-201603-10
- GLSA-201603-10
Modified: 2024-11-21
CVE-2015-1859
Multiple buffer overflows in plugins/imageformats/ico/qicohandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remote attackers to cause a denial of service (segmentation fault and crash) and possibly execute arbitrary code via a crafted ICO image.
- FEDORA-2015-6114
- FEDORA-2015-6114
- FEDORA-2015-6123
- FEDORA-2015-6123
- FEDORA-2015-6315
- FEDORA-2015-6315
- FEDORA-2015-6364
- FEDORA-2015-6364
- FEDORA-2015-6252
- FEDORA-2015-6252
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- 74307
- 74307
- 74310
- 74310
- USN-2626-1
- USN-2626-1
- GLSA-201603-10
- GLSA-201603-10
Modified: 2024-11-21
CVE-2015-1860
Multiple buffer overflows in gui/image/qgifhandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remote attackers to cause a denial of service (segmentation fault) and possibly execute arbitrary code via a crafted GIF image.
- FEDORA-2015-6114
- FEDORA-2015-6114
- FEDORA-2015-6123
- FEDORA-2015-6123
- FEDORA-2015-6613
- FEDORA-2015-6613
- FEDORA-2015-6315
- FEDORA-2015-6315
- FEDORA-2015-6364
- FEDORA-2015-6364
- FEDORA-2015-6252
- FEDORA-2015-6252
- FEDORA-2015-6661
- FEDORA-2015-6661
- FEDORA-2015-6573
- FEDORA-2015-6573
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- 74302
- 74302
- USN-2626-1
- USN-2626-1
- https://codereview.qt-project.org/#/c/108248/
- https://codereview.qt-project.org/#/c/108248/
- GLSA-201603-10
- GLSA-201603-10
Modified: 2024-11-21
CVE-2015-7298
ownCloud Desktop Client before 2.0.1, when compiled with a Qt release after 5.3.x, does not call QNetworkReply::ignoreSslErrors with the list of errors to be ignored, which makes it easier for remote attackers to conduct man-in-the-middle (MITM) attacks by leveraging a server using a self-signed certificate. NOTE: this vulnerability exists because of a partial CVE-2015-4456 regression.
Package qt5-x11extras updated to version 5.4.2-alt1 for branch sisyphus in task 145230.
Closed vulnerabilities
Modified: 2024-11-21
CVE-2015-0295
The BMP decoder in QtGui in QT before 5.5 does not properly calculate the masks used to extract the color components, which allows remote attackers to cause a denial of service (divide-by-zero and crash) via a crafted BMP file.
- FEDORA-2015-2895
- FEDORA-2015-2895
- FEDORA-2015-2897
- FEDORA-2015-2897
- FEDORA-2015-2866
- FEDORA-2015-2866
- FEDORA-2015-2869
- FEDORA-2015-2869
- FEDORA-2015-2886
- FEDORA-2015-2886
- FEDORA-2015-2901
- FEDORA-2015-2901
- openSUSE-SU-2015:0573
- openSUSE-SU-2015:0573
- [Announce] 20150227 Qt Security Advisory: DoS vulnerability in the BMP image handler
- [Announce] 20150227 Qt Security Advisory: DoS vulnerability in the BMP image handler
- 73029
- 73029
- USN-2626-1
- USN-2626-1
Modified: 2024-11-21
CVE-2015-1858
Multiple buffer overflows in gui/image/qbmphandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remote attackers to cause a denial of service (segmentation fault and crash) and possibly execute arbitrary code via a crafted BMP image.
- FEDORA-2015-6114
- FEDORA-2015-6114
- FEDORA-2015-6123
- FEDORA-2015-6123
- FEDORA-2015-6315
- FEDORA-2015-6315
- FEDORA-2015-6364
- FEDORA-2015-6364
- FEDORA-2015-6252
- FEDORA-2015-6252
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- 74309
- 74309
- USN-2626-1
- USN-2626-1
- https://codereview.qt-project.org/#/c/108312/
- https://codereview.qt-project.org/#/c/108312/
- GLSA-201603-10
- GLSA-201603-10
Modified: 2024-11-21
CVE-2015-1859
Multiple buffer overflows in plugins/imageformats/ico/qicohandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remote attackers to cause a denial of service (segmentation fault and crash) and possibly execute arbitrary code via a crafted ICO image.
- FEDORA-2015-6114
- FEDORA-2015-6114
- FEDORA-2015-6123
- FEDORA-2015-6123
- FEDORA-2015-6315
- FEDORA-2015-6315
- FEDORA-2015-6364
- FEDORA-2015-6364
- FEDORA-2015-6252
- FEDORA-2015-6252
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- 74307
- 74307
- 74310
- 74310
- USN-2626-1
- USN-2626-1
- GLSA-201603-10
- GLSA-201603-10
Modified: 2024-11-21
CVE-2015-1860
Multiple buffer overflows in gui/image/qgifhandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remote attackers to cause a denial of service (segmentation fault) and possibly execute arbitrary code via a crafted GIF image.
- FEDORA-2015-6114
- FEDORA-2015-6114
- FEDORA-2015-6123
- FEDORA-2015-6123
- FEDORA-2015-6613
- FEDORA-2015-6613
- FEDORA-2015-6315
- FEDORA-2015-6315
- FEDORA-2015-6364
- FEDORA-2015-6364
- FEDORA-2015-6252
- FEDORA-2015-6252
- FEDORA-2015-6661
- FEDORA-2015-6661
- FEDORA-2015-6573
- FEDORA-2015-6573
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- 74302
- 74302
- USN-2626-1
- USN-2626-1
- https://codereview.qt-project.org/#/c/108248/
- https://codereview.qt-project.org/#/c/108248/
- GLSA-201603-10
- GLSA-201603-10
Modified: 2024-11-21
CVE-2015-7298
ownCloud Desktop Client before 2.0.1, when compiled with a Qt release after 5.3.x, does not call QNetworkReply::ignoreSslErrors with the list of errors to be ignored, which makes it easier for remote attackers to conduct man-in-the-middle (MITM) attacks by leveraging a server using a self-signed certificate. NOTE: this vulnerability exists because of a partial CVE-2015-4456 regression.
Package qt5-imageformats updated to version 5.4.2-alt1 for branch sisyphus in task 145230.
Closed vulnerabilities
Modified: 2024-11-21
CVE-2015-0295
The BMP decoder in QtGui in QT before 5.5 does not properly calculate the masks used to extract the color components, which allows remote attackers to cause a denial of service (divide-by-zero and crash) via a crafted BMP file.
- FEDORA-2015-2895
- FEDORA-2015-2895
- FEDORA-2015-2897
- FEDORA-2015-2897
- FEDORA-2015-2866
- FEDORA-2015-2866
- FEDORA-2015-2869
- FEDORA-2015-2869
- FEDORA-2015-2886
- FEDORA-2015-2886
- FEDORA-2015-2901
- FEDORA-2015-2901
- openSUSE-SU-2015:0573
- openSUSE-SU-2015:0573
- [Announce] 20150227 Qt Security Advisory: DoS vulnerability in the BMP image handler
- [Announce] 20150227 Qt Security Advisory: DoS vulnerability in the BMP image handler
- 73029
- 73029
- USN-2626-1
- USN-2626-1
Modified: 2024-11-21
CVE-2015-1858
Multiple buffer overflows in gui/image/qbmphandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remote attackers to cause a denial of service (segmentation fault and crash) and possibly execute arbitrary code via a crafted BMP image.
- FEDORA-2015-6114
- FEDORA-2015-6114
- FEDORA-2015-6123
- FEDORA-2015-6123
- FEDORA-2015-6315
- FEDORA-2015-6315
- FEDORA-2015-6364
- FEDORA-2015-6364
- FEDORA-2015-6252
- FEDORA-2015-6252
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- 74309
- 74309
- USN-2626-1
- USN-2626-1
- https://codereview.qt-project.org/#/c/108312/
- https://codereview.qt-project.org/#/c/108312/
- GLSA-201603-10
- GLSA-201603-10
Modified: 2024-11-21
CVE-2015-1859
Multiple buffer overflows in plugins/imageformats/ico/qicohandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remote attackers to cause a denial of service (segmentation fault and crash) and possibly execute arbitrary code via a crafted ICO image.
- FEDORA-2015-6114
- FEDORA-2015-6114
- FEDORA-2015-6123
- FEDORA-2015-6123
- FEDORA-2015-6315
- FEDORA-2015-6315
- FEDORA-2015-6364
- FEDORA-2015-6364
- FEDORA-2015-6252
- FEDORA-2015-6252
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- 74307
- 74307
- 74310
- 74310
- USN-2626-1
- USN-2626-1
- GLSA-201603-10
- GLSA-201603-10
Modified: 2024-11-21
CVE-2015-1860
Multiple buffer overflows in gui/image/qgifhandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remote attackers to cause a denial of service (segmentation fault) and possibly execute arbitrary code via a crafted GIF image.
- FEDORA-2015-6114
- FEDORA-2015-6114
- FEDORA-2015-6123
- FEDORA-2015-6123
- FEDORA-2015-6613
- FEDORA-2015-6613
- FEDORA-2015-6315
- FEDORA-2015-6315
- FEDORA-2015-6364
- FEDORA-2015-6364
- FEDORA-2015-6252
- FEDORA-2015-6252
- FEDORA-2015-6661
- FEDORA-2015-6661
- FEDORA-2015-6573
- FEDORA-2015-6573
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- 74302
- 74302
- USN-2626-1
- USN-2626-1
- https://codereview.qt-project.org/#/c/108248/
- https://codereview.qt-project.org/#/c/108248/
- GLSA-201603-10
- GLSA-201603-10
Modified: 2024-11-21
CVE-2015-7298
ownCloud Desktop Client before 2.0.1, when compiled with a Qt release after 5.3.x, does not call QNetworkReply::ignoreSslErrors with the list of errors to be ignored, which makes it easier for remote attackers to conduct man-in-the-middle (MITM) attacks by leveraging a server using a self-signed certificate. NOTE: this vulnerability exists because of a partial CVE-2015-4456 regression.
Closed vulnerabilities
Modified: 2024-11-21
CVE-2015-0295
The BMP decoder in QtGui in QT before 5.5 does not properly calculate the masks used to extract the color components, which allows remote attackers to cause a denial of service (divide-by-zero and crash) via a crafted BMP file.
- FEDORA-2015-2895
- FEDORA-2015-2895
- FEDORA-2015-2897
- FEDORA-2015-2897
- FEDORA-2015-2866
- FEDORA-2015-2866
- FEDORA-2015-2869
- FEDORA-2015-2869
- FEDORA-2015-2886
- FEDORA-2015-2886
- FEDORA-2015-2901
- FEDORA-2015-2901
- openSUSE-SU-2015:0573
- openSUSE-SU-2015:0573
- [Announce] 20150227 Qt Security Advisory: DoS vulnerability in the BMP image handler
- [Announce] 20150227 Qt Security Advisory: DoS vulnerability in the BMP image handler
- 73029
- 73029
- USN-2626-1
- USN-2626-1
Modified: 2024-11-21
CVE-2015-1858
Multiple buffer overflows in gui/image/qbmphandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remote attackers to cause a denial of service (segmentation fault and crash) and possibly execute arbitrary code via a crafted BMP image.
- FEDORA-2015-6114
- FEDORA-2015-6114
- FEDORA-2015-6123
- FEDORA-2015-6123
- FEDORA-2015-6315
- FEDORA-2015-6315
- FEDORA-2015-6364
- FEDORA-2015-6364
- FEDORA-2015-6252
- FEDORA-2015-6252
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- 74309
- 74309
- USN-2626-1
- USN-2626-1
- https://codereview.qt-project.org/#/c/108312/
- https://codereview.qt-project.org/#/c/108312/
- GLSA-201603-10
- GLSA-201603-10
Modified: 2024-11-21
CVE-2015-1859
Multiple buffer overflows in plugins/imageformats/ico/qicohandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remote attackers to cause a denial of service (segmentation fault and crash) and possibly execute arbitrary code via a crafted ICO image.
- FEDORA-2015-6114
- FEDORA-2015-6114
- FEDORA-2015-6123
- FEDORA-2015-6123
- FEDORA-2015-6315
- FEDORA-2015-6315
- FEDORA-2015-6364
- FEDORA-2015-6364
- FEDORA-2015-6252
- FEDORA-2015-6252
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- 74307
- 74307
- 74310
- 74310
- USN-2626-1
- USN-2626-1
- GLSA-201603-10
- GLSA-201603-10
Modified: 2024-11-21
CVE-2015-1860
Multiple buffer overflows in gui/image/qgifhandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remote attackers to cause a denial of service (segmentation fault) and possibly execute arbitrary code via a crafted GIF image.
- FEDORA-2015-6114
- FEDORA-2015-6114
- FEDORA-2015-6123
- FEDORA-2015-6123
- FEDORA-2015-6613
- FEDORA-2015-6613
- FEDORA-2015-6315
- FEDORA-2015-6315
- FEDORA-2015-6364
- FEDORA-2015-6364
- FEDORA-2015-6252
- FEDORA-2015-6252
- FEDORA-2015-6661
- FEDORA-2015-6661
- FEDORA-2015-6573
- FEDORA-2015-6573
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- 74302
- 74302
- USN-2626-1
- USN-2626-1
- https://codereview.qt-project.org/#/c/108248/
- https://codereview.qt-project.org/#/c/108248/
- GLSA-201603-10
- GLSA-201603-10
Modified: 2024-11-21
CVE-2015-7298
ownCloud Desktop Client before 2.0.1, when compiled with a Qt release after 5.3.x, does not call QNetworkReply::ignoreSslErrors with the list of errors to be ignored, which makes it easier for remote attackers to conduct man-in-the-middle (MITM) attacks by leveraging a server using a self-signed certificate. NOTE: this vulnerability exists because of a partial CVE-2015-4456 regression.
Package qt5-quickcontrols updated to version 5.4.2-alt1 for branch sisyphus in task 145230.
Closed vulnerabilities
Modified: 2024-11-21
CVE-2015-0295
The BMP decoder in QtGui in QT before 5.5 does not properly calculate the masks used to extract the color components, which allows remote attackers to cause a denial of service (divide-by-zero and crash) via a crafted BMP file.
- FEDORA-2015-2895
- FEDORA-2015-2895
- FEDORA-2015-2897
- FEDORA-2015-2897
- FEDORA-2015-2866
- FEDORA-2015-2866
- FEDORA-2015-2869
- FEDORA-2015-2869
- FEDORA-2015-2886
- FEDORA-2015-2886
- FEDORA-2015-2901
- FEDORA-2015-2901
- openSUSE-SU-2015:0573
- openSUSE-SU-2015:0573
- [Announce] 20150227 Qt Security Advisory: DoS vulnerability in the BMP image handler
- [Announce] 20150227 Qt Security Advisory: DoS vulnerability in the BMP image handler
- 73029
- 73029
- USN-2626-1
- USN-2626-1
Modified: 2024-11-21
CVE-2015-1858
Multiple buffer overflows in gui/image/qbmphandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remote attackers to cause a denial of service (segmentation fault and crash) and possibly execute arbitrary code via a crafted BMP image.
- FEDORA-2015-6114
- FEDORA-2015-6114
- FEDORA-2015-6123
- FEDORA-2015-6123
- FEDORA-2015-6315
- FEDORA-2015-6315
- FEDORA-2015-6364
- FEDORA-2015-6364
- FEDORA-2015-6252
- FEDORA-2015-6252
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- 74309
- 74309
- USN-2626-1
- USN-2626-1
- https://codereview.qt-project.org/#/c/108312/
- https://codereview.qt-project.org/#/c/108312/
- GLSA-201603-10
- GLSA-201603-10
Modified: 2024-11-21
CVE-2015-1859
Multiple buffer overflows in plugins/imageformats/ico/qicohandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remote attackers to cause a denial of service (segmentation fault and crash) and possibly execute arbitrary code via a crafted ICO image.
- FEDORA-2015-6114
- FEDORA-2015-6114
- FEDORA-2015-6123
- FEDORA-2015-6123
- FEDORA-2015-6315
- FEDORA-2015-6315
- FEDORA-2015-6364
- FEDORA-2015-6364
- FEDORA-2015-6252
- FEDORA-2015-6252
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- 74307
- 74307
- 74310
- 74310
- USN-2626-1
- USN-2626-1
- GLSA-201603-10
- GLSA-201603-10
Modified: 2024-11-21
CVE-2015-1860
Multiple buffer overflows in gui/image/qgifhandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remote attackers to cause a denial of service (segmentation fault) and possibly execute arbitrary code via a crafted GIF image.
- FEDORA-2015-6114
- FEDORA-2015-6114
- FEDORA-2015-6123
- FEDORA-2015-6123
- FEDORA-2015-6613
- FEDORA-2015-6613
- FEDORA-2015-6315
- FEDORA-2015-6315
- FEDORA-2015-6364
- FEDORA-2015-6364
- FEDORA-2015-6252
- FEDORA-2015-6252
- FEDORA-2015-6661
- FEDORA-2015-6661
- FEDORA-2015-6573
- FEDORA-2015-6573
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- 74302
- 74302
- USN-2626-1
- USN-2626-1
- https://codereview.qt-project.org/#/c/108248/
- https://codereview.qt-project.org/#/c/108248/
- GLSA-201603-10
- GLSA-201603-10
Modified: 2024-11-21
CVE-2015-7298
ownCloud Desktop Client before 2.0.1, when compiled with a Qt release after 5.3.x, does not call QNetworkReply::ignoreSslErrors with the list of errors to be ignored, which makes it easier for remote attackers to conduct man-in-the-middle (MITM) attacks by leveraging a server using a self-signed certificate. NOTE: this vulnerability exists because of a partial CVE-2015-4456 regression.
Package qt5-connectivity updated to version 5.4.2-alt1 for branch sisyphus in task 145231.
Closed vulnerabilities
Modified: 2024-11-21
CVE-2015-0295
The BMP decoder in QtGui in QT before 5.5 does not properly calculate the masks used to extract the color components, which allows remote attackers to cause a denial of service (divide-by-zero and crash) via a crafted BMP file.
- FEDORA-2015-2895
- FEDORA-2015-2895
- FEDORA-2015-2897
- FEDORA-2015-2897
- FEDORA-2015-2866
- FEDORA-2015-2866
- FEDORA-2015-2869
- FEDORA-2015-2869
- FEDORA-2015-2886
- FEDORA-2015-2886
- FEDORA-2015-2901
- FEDORA-2015-2901
- openSUSE-SU-2015:0573
- openSUSE-SU-2015:0573
- [Announce] 20150227 Qt Security Advisory: DoS vulnerability in the BMP image handler
- [Announce] 20150227 Qt Security Advisory: DoS vulnerability in the BMP image handler
- 73029
- 73029
- USN-2626-1
- USN-2626-1
Modified: 2024-11-21
CVE-2015-1858
Multiple buffer overflows in gui/image/qbmphandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remote attackers to cause a denial of service (segmentation fault and crash) and possibly execute arbitrary code via a crafted BMP image.
- FEDORA-2015-6114
- FEDORA-2015-6114
- FEDORA-2015-6123
- FEDORA-2015-6123
- FEDORA-2015-6315
- FEDORA-2015-6315
- FEDORA-2015-6364
- FEDORA-2015-6364
- FEDORA-2015-6252
- FEDORA-2015-6252
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- 74309
- 74309
- USN-2626-1
- USN-2626-1
- https://codereview.qt-project.org/#/c/108312/
- https://codereview.qt-project.org/#/c/108312/
- GLSA-201603-10
- GLSA-201603-10
Modified: 2024-11-21
CVE-2015-1859
Multiple buffer overflows in plugins/imageformats/ico/qicohandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remote attackers to cause a denial of service (segmentation fault and crash) and possibly execute arbitrary code via a crafted ICO image.
- FEDORA-2015-6114
- FEDORA-2015-6114
- FEDORA-2015-6123
- FEDORA-2015-6123
- FEDORA-2015-6315
- FEDORA-2015-6315
- FEDORA-2015-6364
- FEDORA-2015-6364
- FEDORA-2015-6252
- FEDORA-2015-6252
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- 74307
- 74307
- 74310
- 74310
- USN-2626-1
- USN-2626-1
- GLSA-201603-10
- GLSA-201603-10
Modified: 2024-11-21
CVE-2015-1860
Multiple buffer overflows in gui/image/qgifhandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remote attackers to cause a denial of service (segmentation fault) and possibly execute arbitrary code via a crafted GIF image.
- FEDORA-2015-6114
- FEDORA-2015-6114
- FEDORA-2015-6123
- FEDORA-2015-6123
- FEDORA-2015-6613
- FEDORA-2015-6613
- FEDORA-2015-6315
- FEDORA-2015-6315
- FEDORA-2015-6364
- FEDORA-2015-6364
- FEDORA-2015-6252
- FEDORA-2015-6252
- FEDORA-2015-6661
- FEDORA-2015-6661
- FEDORA-2015-6573
- FEDORA-2015-6573
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- 74302
- 74302
- USN-2626-1
- USN-2626-1
- https://codereview.qt-project.org/#/c/108248/
- https://codereview.qt-project.org/#/c/108248/
- GLSA-201603-10
- GLSA-201603-10
Modified: 2024-11-21
CVE-2015-7298
ownCloud Desktop Client before 2.0.1, when compiled with a Qt release after 5.3.x, does not call QNetworkReply::ignoreSslErrors with the list of errors to be ignored, which makes it easier for remote attackers to conduct man-in-the-middle (MITM) attacks by leveraging a server using a self-signed certificate. NOTE: this vulnerability exists because of a partial CVE-2015-4456 regression.
Package qt5-location updated to version 5.4.2-alt1 for branch sisyphus in task 145231.
Closed vulnerabilities
Modified: 2024-11-21
CVE-2015-0295
The BMP decoder in QtGui in QT before 5.5 does not properly calculate the masks used to extract the color components, which allows remote attackers to cause a denial of service (divide-by-zero and crash) via a crafted BMP file.
- FEDORA-2015-2895
- FEDORA-2015-2895
- FEDORA-2015-2897
- FEDORA-2015-2897
- FEDORA-2015-2866
- FEDORA-2015-2866
- FEDORA-2015-2869
- FEDORA-2015-2869
- FEDORA-2015-2886
- FEDORA-2015-2886
- FEDORA-2015-2901
- FEDORA-2015-2901
- openSUSE-SU-2015:0573
- openSUSE-SU-2015:0573
- [Announce] 20150227 Qt Security Advisory: DoS vulnerability in the BMP image handler
- [Announce] 20150227 Qt Security Advisory: DoS vulnerability in the BMP image handler
- 73029
- 73029
- USN-2626-1
- USN-2626-1
Modified: 2024-11-21
CVE-2015-1858
Multiple buffer overflows in gui/image/qbmphandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remote attackers to cause a denial of service (segmentation fault and crash) and possibly execute arbitrary code via a crafted BMP image.
- FEDORA-2015-6114
- FEDORA-2015-6114
- FEDORA-2015-6123
- FEDORA-2015-6123
- FEDORA-2015-6315
- FEDORA-2015-6315
- FEDORA-2015-6364
- FEDORA-2015-6364
- FEDORA-2015-6252
- FEDORA-2015-6252
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- 74309
- 74309
- USN-2626-1
- USN-2626-1
- https://codereview.qt-project.org/#/c/108312/
- https://codereview.qt-project.org/#/c/108312/
- GLSA-201603-10
- GLSA-201603-10
Modified: 2024-11-21
CVE-2015-1859
Multiple buffer overflows in plugins/imageformats/ico/qicohandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remote attackers to cause a denial of service (segmentation fault and crash) and possibly execute arbitrary code via a crafted ICO image.
- FEDORA-2015-6114
- FEDORA-2015-6114
- FEDORA-2015-6123
- FEDORA-2015-6123
- FEDORA-2015-6315
- FEDORA-2015-6315
- FEDORA-2015-6364
- FEDORA-2015-6364
- FEDORA-2015-6252
- FEDORA-2015-6252
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- 74307
- 74307
- 74310
- 74310
- USN-2626-1
- USN-2626-1
- GLSA-201603-10
- GLSA-201603-10
Modified: 2024-11-21
CVE-2015-1860
Multiple buffer overflows in gui/image/qgifhandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remote attackers to cause a denial of service (segmentation fault) and possibly execute arbitrary code via a crafted GIF image.
- FEDORA-2015-6114
- FEDORA-2015-6114
- FEDORA-2015-6123
- FEDORA-2015-6123
- FEDORA-2015-6613
- FEDORA-2015-6613
- FEDORA-2015-6315
- FEDORA-2015-6315
- FEDORA-2015-6364
- FEDORA-2015-6364
- FEDORA-2015-6252
- FEDORA-2015-6252
- FEDORA-2015-6661
- FEDORA-2015-6661
- FEDORA-2015-6573
- FEDORA-2015-6573
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- 74302
- 74302
- USN-2626-1
- USN-2626-1
- https://codereview.qt-project.org/#/c/108248/
- https://codereview.qt-project.org/#/c/108248/
- GLSA-201603-10
- GLSA-201603-10
Modified: 2024-11-21
CVE-2015-7298
ownCloud Desktop Client before 2.0.1, when compiled with a Qt release after 5.3.x, does not call QNetworkReply::ignoreSslErrors with the list of errors to be ignored, which makes it easier for remote attackers to conduct man-in-the-middle (MITM) attacks by leveraging a server using a self-signed certificate. NOTE: this vulnerability exists because of a partial CVE-2015-4456 regression.
Package qt5-serialport updated to version 5.4.2-alt1 for branch sisyphus in task 145231.
Closed vulnerabilities
Modified: 2024-11-21
CVE-2015-0295
The BMP decoder in QtGui in QT before 5.5 does not properly calculate the masks used to extract the color components, which allows remote attackers to cause a denial of service (divide-by-zero and crash) via a crafted BMP file.
- FEDORA-2015-2895
- FEDORA-2015-2895
- FEDORA-2015-2897
- FEDORA-2015-2897
- FEDORA-2015-2866
- FEDORA-2015-2866
- FEDORA-2015-2869
- FEDORA-2015-2869
- FEDORA-2015-2886
- FEDORA-2015-2886
- FEDORA-2015-2901
- FEDORA-2015-2901
- openSUSE-SU-2015:0573
- openSUSE-SU-2015:0573
- [Announce] 20150227 Qt Security Advisory: DoS vulnerability in the BMP image handler
- [Announce] 20150227 Qt Security Advisory: DoS vulnerability in the BMP image handler
- 73029
- 73029
- USN-2626-1
- USN-2626-1
Modified: 2024-11-21
CVE-2015-1858
Multiple buffer overflows in gui/image/qbmphandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remote attackers to cause a denial of service (segmentation fault and crash) and possibly execute arbitrary code via a crafted BMP image.
- FEDORA-2015-6114
- FEDORA-2015-6114
- FEDORA-2015-6123
- FEDORA-2015-6123
- FEDORA-2015-6315
- FEDORA-2015-6315
- FEDORA-2015-6364
- FEDORA-2015-6364
- FEDORA-2015-6252
- FEDORA-2015-6252
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- 74309
- 74309
- USN-2626-1
- USN-2626-1
- https://codereview.qt-project.org/#/c/108312/
- https://codereview.qt-project.org/#/c/108312/
- GLSA-201603-10
- GLSA-201603-10
Modified: 2024-11-21
CVE-2015-1859
Multiple buffer overflows in plugins/imageformats/ico/qicohandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remote attackers to cause a denial of service (segmentation fault and crash) and possibly execute arbitrary code via a crafted ICO image.
- FEDORA-2015-6114
- FEDORA-2015-6114
- FEDORA-2015-6123
- FEDORA-2015-6123
- FEDORA-2015-6315
- FEDORA-2015-6315
- FEDORA-2015-6364
- FEDORA-2015-6364
- FEDORA-2015-6252
- FEDORA-2015-6252
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- 74307
- 74307
- 74310
- 74310
- USN-2626-1
- USN-2626-1
- GLSA-201603-10
- GLSA-201603-10
Modified: 2024-11-21
CVE-2015-1860
Multiple buffer overflows in gui/image/qgifhandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remote attackers to cause a denial of service (segmentation fault) and possibly execute arbitrary code via a crafted GIF image.
- FEDORA-2015-6114
- FEDORA-2015-6114
- FEDORA-2015-6123
- FEDORA-2015-6123
- FEDORA-2015-6613
- FEDORA-2015-6613
- FEDORA-2015-6315
- FEDORA-2015-6315
- FEDORA-2015-6364
- FEDORA-2015-6364
- FEDORA-2015-6252
- FEDORA-2015-6252
- FEDORA-2015-6661
- FEDORA-2015-6661
- FEDORA-2015-6573
- FEDORA-2015-6573
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- 74302
- 74302
- USN-2626-1
- USN-2626-1
- https://codereview.qt-project.org/#/c/108248/
- https://codereview.qt-project.org/#/c/108248/
- GLSA-201603-10
- GLSA-201603-10
Modified: 2024-11-21
CVE-2015-7298
ownCloud Desktop Client before 2.0.1, when compiled with a Qt release after 5.3.x, does not call QNetworkReply::ignoreSslErrors with the list of errors to be ignored, which makes it easier for remote attackers to conduct man-in-the-middle (MITM) attacks by leveraging a server using a self-signed certificate. NOTE: this vulnerability exists because of a partial CVE-2015-4456 regression.
Package qt5-sensors updated to version 5.4.2-alt1 for branch sisyphus in task 145231.
Closed vulnerabilities
Modified: 2024-11-21
CVE-2015-0295
The BMP decoder in QtGui in QT before 5.5 does not properly calculate the masks used to extract the color components, which allows remote attackers to cause a denial of service (divide-by-zero and crash) via a crafted BMP file.
- FEDORA-2015-2895
- FEDORA-2015-2895
- FEDORA-2015-2897
- FEDORA-2015-2897
- FEDORA-2015-2866
- FEDORA-2015-2866
- FEDORA-2015-2869
- FEDORA-2015-2869
- FEDORA-2015-2886
- FEDORA-2015-2886
- FEDORA-2015-2901
- FEDORA-2015-2901
- openSUSE-SU-2015:0573
- openSUSE-SU-2015:0573
- [Announce] 20150227 Qt Security Advisory: DoS vulnerability in the BMP image handler
- [Announce] 20150227 Qt Security Advisory: DoS vulnerability in the BMP image handler
- 73029
- 73029
- USN-2626-1
- USN-2626-1
Modified: 2024-11-21
CVE-2015-1858
Multiple buffer overflows in gui/image/qbmphandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remote attackers to cause a denial of service (segmentation fault and crash) and possibly execute arbitrary code via a crafted BMP image.
- FEDORA-2015-6114
- FEDORA-2015-6114
- FEDORA-2015-6123
- FEDORA-2015-6123
- FEDORA-2015-6315
- FEDORA-2015-6315
- FEDORA-2015-6364
- FEDORA-2015-6364
- FEDORA-2015-6252
- FEDORA-2015-6252
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- 74309
- 74309
- USN-2626-1
- USN-2626-1
- https://codereview.qt-project.org/#/c/108312/
- https://codereview.qt-project.org/#/c/108312/
- GLSA-201603-10
- GLSA-201603-10
Modified: 2024-11-21
CVE-2015-1859
Multiple buffer overflows in plugins/imageformats/ico/qicohandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remote attackers to cause a denial of service (segmentation fault and crash) and possibly execute arbitrary code via a crafted ICO image.
- FEDORA-2015-6114
- FEDORA-2015-6114
- FEDORA-2015-6123
- FEDORA-2015-6123
- FEDORA-2015-6315
- FEDORA-2015-6315
- FEDORA-2015-6364
- FEDORA-2015-6364
- FEDORA-2015-6252
- FEDORA-2015-6252
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- 74307
- 74307
- 74310
- 74310
- USN-2626-1
- USN-2626-1
- GLSA-201603-10
- GLSA-201603-10
Modified: 2024-11-21
CVE-2015-1860
Multiple buffer overflows in gui/image/qgifhandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remote attackers to cause a denial of service (segmentation fault) and possibly execute arbitrary code via a crafted GIF image.
- FEDORA-2015-6114
- FEDORA-2015-6114
- FEDORA-2015-6123
- FEDORA-2015-6123
- FEDORA-2015-6613
- FEDORA-2015-6613
- FEDORA-2015-6315
- FEDORA-2015-6315
- FEDORA-2015-6364
- FEDORA-2015-6364
- FEDORA-2015-6252
- FEDORA-2015-6252
- FEDORA-2015-6661
- FEDORA-2015-6661
- FEDORA-2015-6573
- FEDORA-2015-6573
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- 74302
- 74302
- USN-2626-1
- USN-2626-1
- https://codereview.qt-project.org/#/c/108248/
- https://codereview.qt-project.org/#/c/108248/
- GLSA-201603-10
- GLSA-201603-10
Modified: 2024-11-21
CVE-2015-7298
ownCloud Desktop Client before 2.0.1, when compiled with a Qt release after 5.3.x, does not call QNetworkReply::ignoreSslErrors with the list of errors to be ignored, which makes it easier for remote attackers to conduct man-in-the-middle (MITM) attacks by leveraging a server using a self-signed certificate. NOTE: this vulnerability exists because of a partial CVE-2015-4456 regression.
Package qt5-translations updated to version 5.4.2-alt1 for branch sisyphus in task 145231.
Closed vulnerabilities
Modified: 2024-11-21
CVE-2015-0295
The BMP decoder in QtGui in QT before 5.5 does not properly calculate the masks used to extract the color components, which allows remote attackers to cause a denial of service (divide-by-zero and crash) via a crafted BMP file.
- FEDORA-2015-2895
- FEDORA-2015-2895
- FEDORA-2015-2897
- FEDORA-2015-2897
- FEDORA-2015-2866
- FEDORA-2015-2866
- FEDORA-2015-2869
- FEDORA-2015-2869
- FEDORA-2015-2886
- FEDORA-2015-2886
- FEDORA-2015-2901
- FEDORA-2015-2901
- openSUSE-SU-2015:0573
- openSUSE-SU-2015:0573
- [Announce] 20150227 Qt Security Advisory: DoS vulnerability in the BMP image handler
- [Announce] 20150227 Qt Security Advisory: DoS vulnerability in the BMP image handler
- 73029
- 73029
- USN-2626-1
- USN-2626-1
Modified: 2024-11-21
CVE-2015-1858
Multiple buffer overflows in gui/image/qbmphandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remote attackers to cause a denial of service (segmentation fault and crash) and possibly execute arbitrary code via a crafted BMP image.
- FEDORA-2015-6114
- FEDORA-2015-6114
- FEDORA-2015-6123
- FEDORA-2015-6123
- FEDORA-2015-6315
- FEDORA-2015-6315
- FEDORA-2015-6364
- FEDORA-2015-6364
- FEDORA-2015-6252
- FEDORA-2015-6252
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- 74309
- 74309
- USN-2626-1
- USN-2626-1
- https://codereview.qt-project.org/#/c/108312/
- https://codereview.qt-project.org/#/c/108312/
- GLSA-201603-10
- GLSA-201603-10
Modified: 2024-11-21
CVE-2015-1859
Multiple buffer overflows in plugins/imageformats/ico/qicohandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remote attackers to cause a denial of service (segmentation fault and crash) and possibly execute arbitrary code via a crafted ICO image.
- FEDORA-2015-6114
- FEDORA-2015-6114
- FEDORA-2015-6123
- FEDORA-2015-6123
- FEDORA-2015-6315
- FEDORA-2015-6315
- FEDORA-2015-6364
- FEDORA-2015-6364
- FEDORA-2015-6252
- FEDORA-2015-6252
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- 74307
- 74307
- 74310
- 74310
- USN-2626-1
- USN-2626-1
- GLSA-201603-10
- GLSA-201603-10
Modified: 2024-11-21
CVE-2015-1860
Multiple buffer overflows in gui/image/qgifhandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remote attackers to cause a denial of service (segmentation fault) and possibly execute arbitrary code via a crafted GIF image.
- FEDORA-2015-6114
- FEDORA-2015-6114
- FEDORA-2015-6123
- FEDORA-2015-6123
- FEDORA-2015-6613
- FEDORA-2015-6613
- FEDORA-2015-6315
- FEDORA-2015-6315
- FEDORA-2015-6364
- FEDORA-2015-6364
- FEDORA-2015-6252
- FEDORA-2015-6252
- FEDORA-2015-6661
- FEDORA-2015-6661
- FEDORA-2015-6573
- FEDORA-2015-6573
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- 74302
- 74302
- USN-2626-1
- USN-2626-1
- https://codereview.qt-project.org/#/c/108248/
- https://codereview.qt-project.org/#/c/108248/
- GLSA-201603-10
- GLSA-201603-10
Modified: 2024-11-21
CVE-2015-7298
ownCloud Desktop Client before 2.0.1, when compiled with a Qt release after 5.3.x, does not call QNetworkReply::ignoreSslErrors with the list of errors to be ignored, which makes it easier for remote attackers to conduct man-in-the-middle (MITM) attacks by leveraging a server using a self-signed certificate. NOTE: this vulnerability exists because of a partial CVE-2015-4456 regression.
Package qt5-graphicaleffects updated to version 5.4.2-alt1 for branch sisyphus in task 145231.
Closed vulnerabilities
Modified: 2024-11-21
CVE-2015-0295
The BMP decoder in QtGui in QT before 5.5 does not properly calculate the masks used to extract the color components, which allows remote attackers to cause a denial of service (divide-by-zero and crash) via a crafted BMP file.
- FEDORA-2015-2895
- FEDORA-2015-2895
- FEDORA-2015-2897
- FEDORA-2015-2897
- FEDORA-2015-2866
- FEDORA-2015-2866
- FEDORA-2015-2869
- FEDORA-2015-2869
- FEDORA-2015-2886
- FEDORA-2015-2886
- FEDORA-2015-2901
- FEDORA-2015-2901
- openSUSE-SU-2015:0573
- openSUSE-SU-2015:0573
- [Announce] 20150227 Qt Security Advisory: DoS vulnerability in the BMP image handler
- [Announce] 20150227 Qt Security Advisory: DoS vulnerability in the BMP image handler
- 73029
- 73029
- USN-2626-1
- USN-2626-1
Modified: 2024-11-21
CVE-2015-1858
Multiple buffer overflows in gui/image/qbmphandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remote attackers to cause a denial of service (segmentation fault and crash) and possibly execute arbitrary code via a crafted BMP image.
- FEDORA-2015-6114
- FEDORA-2015-6114
- FEDORA-2015-6123
- FEDORA-2015-6123
- FEDORA-2015-6315
- FEDORA-2015-6315
- FEDORA-2015-6364
- FEDORA-2015-6364
- FEDORA-2015-6252
- FEDORA-2015-6252
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- 74309
- 74309
- USN-2626-1
- USN-2626-1
- https://codereview.qt-project.org/#/c/108312/
- https://codereview.qt-project.org/#/c/108312/
- GLSA-201603-10
- GLSA-201603-10
Modified: 2024-11-21
CVE-2015-1859
Multiple buffer overflows in plugins/imageformats/ico/qicohandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remote attackers to cause a denial of service (segmentation fault and crash) and possibly execute arbitrary code via a crafted ICO image.
- FEDORA-2015-6114
- FEDORA-2015-6114
- FEDORA-2015-6123
- FEDORA-2015-6123
- FEDORA-2015-6315
- FEDORA-2015-6315
- FEDORA-2015-6364
- FEDORA-2015-6364
- FEDORA-2015-6252
- FEDORA-2015-6252
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- 74307
- 74307
- 74310
- 74310
- USN-2626-1
- USN-2626-1
- GLSA-201603-10
- GLSA-201603-10
Modified: 2024-11-21
CVE-2015-1860
Multiple buffer overflows in gui/image/qgifhandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remote attackers to cause a denial of service (segmentation fault) and possibly execute arbitrary code via a crafted GIF image.
- FEDORA-2015-6114
- FEDORA-2015-6114
- FEDORA-2015-6123
- FEDORA-2015-6123
- FEDORA-2015-6613
- FEDORA-2015-6613
- FEDORA-2015-6315
- FEDORA-2015-6315
- FEDORA-2015-6364
- FEDORA-2015-6364
- FEDORA-2015-6252
- FEDORA-2015-6252
- FEDORA-2015-6661
- FEDORA-2015-6661
- FEDORA-2015-6573
- FEDORA-2015-6573
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- 74302
- 74302
- USN-2626-1
- USN-2626-1
- https://codereview.qt-project.org/#/c/108248/
- https://codereview.qt-project.org/#/c/108248/
- GLSA-201603-10
- GLSA-201603-10
Modified: 2024-11-21
CVE-2015-7298
ownCloud Desktop Client before 2.0.1, when compiled with a Qt release after 5.3.x, does not call QNetworkReply::ignoreSslErrors with the list of errors to be ignored, which makes it easier for remote attackers to conduct man-in-the-middle (MITM) attacks by leveraging a server using a self-signed certificate. NOTE: this vulnerability exists because of a partial CVE-2015-4456 regression.
Closed vulnerabilities
Modified: 2024-11-21
CVE-2015-0295
The BMP decoder in QtGui in QT before 5.5 does not properly calculate the masks used to extract the color components, which allows remote attackers to cause a denial of service (divide-by-zero and crash) via a crafted BMP file.
- FEDORA-2015-2895
- FEDORA-2015-2895
- FEDORA-2015-2897
- FEDORA-2015-2897
- FEDORA-2015-2866
- FEDORA-2015-2866
- FEDORA-2015-2869
- FEDORA-2015-2869
- FEDORA-2015-2886
- FEDORA-2015-2886
- FEDORA-2015-2901
- FEDORA-2015-2901
- openSUSE-SU-2015:0573
- openSUSE-SU-2015:0573
- [Announce] 20150227 Qt Security Advisory: DoS vulnerability in the BMP image handler
- [Announce] 20150227 Qt Security Advisory: DoS vulnerability in the BMP image handler
- 73029
- 73029
- USN-2626-1
- USN-2626-1
Modified: 2024-11-21
CVE-2015-1858
Multiple buffer overflows in gui/image/qbmphandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remote attackers to cause a denial of service (segmentation fault and crash) and possibly execute arbitrary code via a crafted BMP image.
- FEDORA-2015-6114
- FEDORA-2015-6114
- FEDORA-2015-6123
- FEDORA-2015-6123
- FEDORA-2015-6315
- FEDORA-2015-6315
- FEDORA-2015-6364
- FEDORA-2015-6364
- FEDORA-2015-6252
- FEDORA-2015-6252
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- 74309
- 74309
- USN-2626-1
- USN-2626-1
- https://codereview.qt-project.org/#/c/108312/
- https://codereview.qt-project.org/#/c/108312/
- GLSA-201603-10
- GLSA-201603-10
Modified: 2024-11-21
CVE-2015-1859
Multiple buffer overflows in plugins/imageformats/ico/qicohandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remote attackers to cause a denial of service (segmentation fault and crash) and possibly execute arbitrary code via a crafted ICO image.
- FEDORA-2015-6114
- FEDORA-2015-6114
- FEDORA-2015-6123
- FEDORA-2015-6123
- FEDORA-2015-6315
- FEDORA-2015-6315
- FEDORA-2015-6364
- FEDORA-2015-6364
- FEDORA-2015-6252
- FEDORA-2015-6252
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- 74307
- 74307
- 74310
- 74310
- USN-2626-1
- USN-2626-1
- GLSA-201603-10
- GLSA-201603-10
Modified: 2024-11-21
CVE-2015-1860
Multiple buffer overflows in gui/image/qgifhandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remote attackers to cause a denial of service (segmentation fault) and possibly execute arbitrary code via a crafted GIF image.
- FEDORA-2015-6114
- FEDORA-2015-6114
- FEDORA-2015-6123
- FEDORA-2015-6123
- FEDORA-2015-6613
- FEDORA-2015-6613
- FEDORA-2015-6315
- FEDORA-2015-6315
- FEDORA-2015-6364
- FEDORA-2015-6364
- FEDORA-2015-6252
- FEDORA-2015-6252
- FEDORA-2015-6661
- FEDORA-2015-6661
- FEDORA-2015-6573
- FEDORA-2015-6573
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- 74302
- 74302
- USN-2626-1
- USN-2626-1
- https://codereview.qt-project.org/#/c/108248/
- https://codereview.qt-project.org/#/c/108248/
- GLSA-201603-10
- GLSA-201603-10
Modified: 2024-11-21
CVE-2015-7298
ownCloud Desktop Client before 2.0.1, when compiled with a Qt release after 5.3.x, does not call QNetworkReply::ignoreSslErrors with the list of errors to be ignored, which makes it easier for remote attackers to conduct man-in-the-middle (MITM) attacks by leveraging a server using a self-signed certificate. NOTE: this vulnerability exists because of a partial CVE-2015-4456 regression.
Package qt5-websockets updated to version 5.4.2-alt1 for branch sisyphus in task 145231.
Closed vulnerabilities
Modified: 2024-11-21
CVE-2015-0295
The BMP decoder in QtGui in QT before 5.5 does not properly calculate the masks used to extract the color components, which allows remote attackers to cause a denial of service (divide-by-zero and crash) via a crafted BMP file.
- FEDORA-2015-2895
- FEDORA-2015-2895
- FEDORA-2015-2897
- FEDORA-2015-2897
- FEDORA-2015-2866
- FEDORA-2015-2866
- FEDORA-2015-2869
- FEDORA-2015-2869
- FEDORA-2015-2886
- FEDORA-2015-2886
- FEDORA-2015-2901
- FEDORA-2015-2901
- openSUSE-SU-2015:0573
- openSUSE-SU-2015:0573
- [Announce] 20150227 Qt Security Advisory: DoS vulnerability in the BMP image handler
- [Announce] 20150227 Qt Security Advisory: DoS vulnerability in the BMP image handler
- 73029
- 73029
- USN-2626-1
- USN-2626-1
Modified: 2024-11-21
CVE-2015-1858
Multiple buffer overflows in gui/image/qbmphandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remote attackers to cause a denial of service (segmentation fault and crash) and possibly execute arbitrary code via a crafted BMP image.
- FEDORA-2015-6114
- FEDORA-2015-6114
- FEDORA-2015-6123
- FEDORA-2015-6123
- FEDORA-2015-6315
- FEDORA-2015-6315
- FEDORA-2015-6364
- FEDORA-2015-6364
- FEDORA-2015-6252
- FEDORA-2015-6252
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- 74309
- 74309
- USN-2626-1
- USN-2626-1
- https://codereview.qt-project.org/#/c/108312/
- https://codereview.qt-project.org/#/c/108312/
- GLSA-201603-10
- GLSA-201603-10
Modified: 2024-11-21
CVE-2015-1859
Multiple buffer overflows in plugins/imageformats/ico/qicohandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remote attackers to cause a denial of service (segmentation fault and crash) and possibly execute arbitrary code via a crafted ICO image.
- FEDORA-2015-6114
- FEDORA-2015-6114
- FEDORA-2015-6123
- FEDORA-2015-6123
- FEDORA-2015-6315
- FEDORA-2015-6315
- FEDORA-2015-6364
- FEDORA-2015-6364
- FEDORA-2015-6252
- FEDORA-2015-6252
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- 74307
- 74307
- 74310
- 74310
- USN-2626-1
- USN-2626-1
- GLSA-201603-10
- GLSA-201603-10
Modified: 2024-11-21
CVE-2015-1860
Multiple buffer overflows in gui/image/qgifhandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remote attackers to cause a denial of service (segmentation fault) and possibly execute arbitrary code via a crafted GIF image.
- FEDORA-2015-6114
- FEDORA-2015-6114
- FEDORA-2015-6123
- FEDORA-2015-6123
- FEDORA-2015-6613
- FEDORA-2015-6613
- FEDORA-2015-6315
- FEDORA-2015-6315
- FEDORA-2015-6364
- FEDORA-2015-6364
- FEDORA-2015-6252
- FEDORA-2015-6252
- FEDORA-2015-6661
- FEDORA-2015-6661
- FEDORA-2015-6573
- FEDORA-2015-6573
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- 74302
- 74302
- USN-2626-1
- USN-2626-1
- https://codereview.qt-project.org/#/c/108248/
- https://codereview.qt-project.org/#/c/108248/
- GLSA-201603-10
- GLSA-201603-10
Modified: 2024-11-21
CVE-2015-7298
ownCloud Desktop Client before 2.0.1, when compiled with a Qt release after 5.3.x, does not call QNetworkReply::ignoreSslErrors with the list of errors to be ignored, which makes it easier for remote attackers to conduct man-in-the-middle (MITM) attacks by leveraging a server using a self-signed certificate. NOTE: this vulnerability exists because of a partial CVE-2015-4456 regression.
Package qt5-wayland updated to version 5.4.2-alt1 for branch sisyphus in task 145232.
Closed vulnerabilities
Modified: 2024-11-21
CVE-2015-0295
The BMP decoder in QtGui in QT before 5.5 does not properly calculate the masks used to extract the color components, which allows remote attackers to cause a denial of service (divide-by-zero and crash) via a crafted BMP file.
- FEDORA-2015-2895
- FEDORA-2015-2895
- FEDORA-2015-2897
- FEDORA-2015-2897
- FEDORA-2015-2866
- FEDORA-2015-2866
- FEDORA-2015-2869
- FEDORA-2015-2869
- FEDORA-2015-2886
- FEDORA-2015-2886
- FEDORA-2015-2901
- FEDORA-2015-2901
- openSUSE-SU-2015:0573
- openSUSE-SU-2015:0573
- [Announce] 20150227 Qt Security Advisory: DoS vulnerability in the BMP image handler
- [Announce] 20150227 Qt Security Advisory: DoS vulnerability in the BMP image handler
- 73029
- 73029
- USN-2626-1
- USN-2626-1
Modified: 2024-11-21
CVE-2015-1858
Multiple buffer overflows in gui/image/qbmphandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remote attackers to cause a denial of service (segmentation fault and crash) and possibly execute arbitrary code via a crafted BMP image.
- FEDORA-2015-6114
- FEDORA-2015-6114
- FEDORA-2015-6123
- FEDORA-2015-6123
- FEDORA-2015-6315
- FEDORA-2015-6315
- FEDORA-2015-6364
- FEDORA-2015-6364
- FEDORA-2015-6252
- FEDORA-2015-6252
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- 74309
- 74309
- USN-2626-1
- USN-2626-1
- https://codereview.qt-project.org/#/c/108312/
- https://codereview.qt-project.org/#/c/108312/
- GLSA-201603-10
- GLSA-201603-10
Modified: 2024-11-21
CVE-2015-1859
Multiple buffer overflows in plugins/imageformats/ico/qicohandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remote attackers to cause a denial of service (segmentation fault and crash) and possibly execute arbitrary code via a crafted ICO image.
- FEDORA-2015-6114
- FEDORA-2015-6114
- FEDORA-2015-6123
- FEDORA-2015-6123
- FEDORA-2015-6315
- FEDORA-2015-6315
- FEDORA-2015-6364
- FEDORA-2015-6364
- FEDORA-2015-6252
- FEDORA-2015-6252
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- 74307
- 74307
- 74310
- 74310
- USN-2626-1
- USN-2626-1
- GLSA-201603-10
- GLSA-201603-10
Modified: 2024-11-21
CVE-2015-1860
Multiple buffer overflows in gui/image/qgifhandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remote attackers to cause a denial of service (segmentation fault) and possibly execute arbitrary code via a crafted GIF image.
- FEDORA-2015-6114
- FEDORA-2015-6114
- FEDORA-2015-6123
- FEDORA-2015-6123
- FEDORA-2015-6613
- FEDORA-2015-6613
- FEDORA-2015-6315
- FEDORA-2015-6315
- FEDORA-2015-6364
- FEDORA-2015-6364
- FEDORA-2015-6252
- FEDORA-2015-6252
- FEDORA-2015-6661
- FEDORA-2015-6661
- FEDORA-2015-6573
- FEDORA-2015-6573
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- 74302
- 74302
- USN-2626-1
- USN-2626-1
- https://codereview.qt-project.org/#/c/108248/
- https://codereview.qt-project.org/#/c/108248/
- GLSA-201603-10
- GLSA-201603-10
Modified: 2024-11-21
CVE-2015-7298
ownCloud Desktop Client before 2.0.1, when compiled with a Qt release after 5.3.x, does not call QNetworkReply::ignoreSslErrors with the list of errors to be ignored, which makes it easier for remote attackers to conduct man-in-the-middle (MITM) attacks by leveraging a server using a self-signed certificate. NOTE: this vulnerability exists because of a partial CVE-2015-4456 regression.
Closed bugs
libraw: new version
Package adobe-flash-player updated to version 11-alt45 for branch sisyphus in task 145262.
Closed vulnerabilities
BDU:2015-10329
Уязвимость программной платформы Adobe AIR, позволяющая нарушителю выполнить произвольный код
BDU:2015-10330
Уязвимость программной платформы Adobe AIR, позволяющая нарушителю выполнить произвольный код
BDU:2015-10331
Уязвимость программной платформы Flash Player, позволяющая нарушителю выполнить произвольный код
BDU:2015-10332
Уязвимость программной платформы Flash Player, позволяющая нарушителю выполнить произвольный код
BDU:2015-10333
Уязвимость программной платформы Adobe AIR, позволяющая нарушителю выполнить произвольный код
BDU:2015-10334
Уязвимость программной платформы Adobe AIR, позволяющая нарушителю выполнить произвольный код
BDU:2015-10335
Уязвимость программной платформы Flash Player, позволяющая нарушителю выполнить произвольный код
BDU:2015-10336
Уязвимость программной платформы Flash Player, позволяющая нарушителю выполнить произвольный код
BDU:2015-10337
Уязвимость программной платформы Adobe AIR, позволяющая нарушителю выполнить произвольный код
BDU:2015-10338
Уязвимость программной платформы Adobe AIR, позволяющая нарушителю выполнить произвольный код
BDU:2015-10339
Уязвимость программной платформы Flash Player, позволяющая нарушителю выполнить произвольный код
BDU:2015-10340
Уязвимость программной платформы Flash Player, позволяющая нарушителю выполнить произвольный код
BDU:2015-10341
Уязвимость программной платформы Adobe AIR, позволяющая нарушителю выполнить произвольный код
BDU:2015-10342
Уязвимость программной платформы Adobe AIR, позволяющая нарушителю выполнить произвольный код
BDU:2015-10343
Уязвимость программной платформы Flash Player, позволяющая нарушителю выполнить произвольный код
BDU:2015-10344
Уязвимость программной платформы Flash Player, позволяющая нарушителю выполнить произвольный код
BDU:2015-10345
Уязвимость программной платформы Adobe AIR, позволяющая нарушителю выполнить произвольный код
BDU:2015-10346
Уязвимость программной платформы Adobe AIR, позволяющая нарушителю выполнить произвольный код
BDU:2015-10347
Уязвимость программной платформы Flash Player, позволяющая нарушителю выполнить произвольный код
BDU:2015-10348
Уязвимость программной платформы Flash Player, позволяющая нарушителю выполнить произвольный код
BDU:2015-10349
Уязвимость программной платформы Adobe AIR, позволяющая нарушителю выполнить произвольный код
BDU:2015-10350
Уязвимость программной платформы Adobe AIR, позволяющая нарушителю выполнить произвольный код
BDU:2015-10351
Уязвимость программной платформы Flash Player, позволяющая нарушителю выполнить произвольный код
BDU:2015-10352
Уязвимость программной платформы Flash Player, позволяющая нарушителю выполнить произвольный код
BDU:2015-10885
Уязвимость программной платформы Flash Player, позволяющая нарушителю обойти механизм защиты ASLR
BDU:2015-10886
Уязвимость программной платформы Flash Player, позволяющая нарушителю обойти механизм защиты ASLR
BDU:2015-10895
Уязвимость программной платформы Flash Player, позволяющая нарушителю обойти ограничения доступа
BDU:2015-10896
Уязвимость программной платформы Flash Player, позволяющая нарушителю обойти ограничения доступа
BDU:2015-10897
Уязвимость программной платформы Adobe AIR, позволяющая нарушителю обойти механизм защиты ASLR
BDU:2015-10898
Уязвимость программной платформы Adobe AIR, позволяющая нарушителю обойти механизм защиты ASLR
BDU:2015-10899
Уязвимость программной платформы Flash Player, позволяющая нарушителю повысить приоритет исполнения процесса с низкого до среднего
BDU:2015-10900
Уязвимость программной платформы Flash Player, позволяющая нарушителю повысить приоритет исполнения процесса с низкого до среднего
BDU:2015-10901
Уязвимость программной платформы Adobe AIR, позволяющая нарушителю обойти ограничения доступа
BDU:2015-10902
Уязвимость программной платформы Adobe AIR, позволяющая нарушителю обойти ограничения доступа
BDU:2015-10903
Уязвимость программной платформы Flash Player, позволяющая нарушителю обойти ограничения доступа
BDU:2015-10904
Уязвимость программной платформы Flash Player, позволяющая нарушителю обойти ограничения доступа
BDU:2015-10905
Уязвимость программной платформы Adobe AIR, позволяющая нарушителю повысить приоритет исполнения процесса с низкого до среднего
BDU:2015-10906
Уязвимость программной платформы Adobe AIR, позволяющая нарушителю повысить приоритет исполнения процесса с низкого до среднего
BDU:2015-10907
Уязвимость программной платформы Flash Player, позволяющая нарушителю обойти ограничения доступа
BDU:2015-10908
Уязвимость программной платформы Flash Player, позволяющая нарушителю обойти ограничения доступа
BDU:2015-10909
Уязвимость программной платформы Adobe AIR, позволяющая нарушителю обойти ограничения доступа
BDU:2015-10910
Уязвимость программной платформы Adobe AIR, позволяющая нарушителю обойти ограничения доступа
BDU:2015-10911
Уязвимость программной платформы Flash Player, позволяющая нарушителю проводить атаки, связанные с ошибками адресации ячеек памяти
BDU:2015-10912
Уязвимость программной платформы Adobe AIR, позволяющая нарушителю проводить атаки, связанные с ошибками адресации ячеек памяти
BDU:2015-10913
Уязвимость программной платформы Adobe AIR, позволяющая нарушителю обойти ограничения доступа
BDU:2015-10914
Уязвимость программной платформы Adobe AIR, позволяющая нарушителю обойти ограничения доступа
BDU:2015-10915
Уязвимость программной платформы Flash Player, позволяющая нарушителю обойти механизм защиты
BDU:2015-10916
Уязвимость программной платформы Flash Player, позволяющая нарушителю обойти механизм защиты
BDU:2015-10917
Уязвимость программной платформы Adobe AIR, позволяющая нарушителю обойти механизм защиты
BDU:2015-10918
Уязвимость программной платформы Adobe AIR, позволяющая нарушителю обойти механизм защиты
Modified: 2024-11-21
CVE-2015-3096
Adobe Flash Player before 13.0.0.292 and 14.x through 18.x before 18.0.0.160 on Windows and OS X and before 11.2.202.466 on Linux, Adobe AIR before 18.0.0.144 on Windows and before 18.0.0.143 on OS X and Android, Adobe AIR SDK before 18.0.0.144 on Windows and before 18.0.0.143 on OS X, and Adobe AIR SDK & Compiler before 18.0.0.144 on Windows and before 18.0.0.143 on OS X allow remote attackers to bypass a CVE-2014-5333 protection mechanism via unspecified vectors.
- SUSE-SU-2015:1043
- SUSE-SU-2015:1043
- openSUSE-SU-2015:1047
- openSUSE-SU-2015:1047
- openSUSE-SU-2015:1061
- openSUSE-SU-2015:1061
- RHSA-2015:1086
- RHSA-2015:1086
- 75088
- 75088
- 1032519
- 1032519
- https://helpx.adobe.com/security/products/flash-player/apsb15-11.html
- https://helpx.adobe.com/security/products/flash-player/apsb15-11.html
- GLSA-201506-01
- GLSA-201506-01
Modified: 2024-11-21
CVE-2015-3097
Adobe Flash Player before 13.0.0.292 and 14.x through 18.x before 18.0.0.160, Adobe AIR before 18.0.0.144, Adobe AIR SDK before 18.0.0.144, and Adobe AIR SDK & Compiler before 18.0.0.144 on 64-bit Windows 7 systems do not properly select a random memory address for the Flash heap, which makes it easier for attackers to conduct unspecified attacks by predicting this address.
- 75090
- 75090
- 1032519
- 1032519
- 1032810
- 1032810
- https://helpx.adobe.com/security/products/flash-player/apsb15-11.html
- https://helpx.adobe.com/security/products/flash-player/apsb15-11.html
- https://helpx.adobe.com/security/products/flash-player/apsb15-16.html
- https://helpx.adobe.com/security/products/flash-player/apsb15-16.html
- GLSA-201506-01
- GLSA-201506-01
Modified: 2024-11-21
CVE-2015-3098
Adobe Flash Player before 13.0.0.292 and 14.x through 18.x before 18.0.0.160 on Windows and OS X and before 11.2.202.466 on Linux, Adobe AIR before 18.0.0.144 on Windows and before 18.0.0.143 on OS X and Android, Adobe AIR SDK before 18.0.0.144 on Windows and before 18.0.0.143 on OS X, and Adobe AIR SDK & Compiler before 18.0.0.144 on Windows and before 18.0.0.143 on OS X allow remote attackers to bypass the Same Origin Policy via unspecified vectors, a different vulnerability than CVE-2015-3099 and CVE-2015-3102.
- SUSE-SU-2015:1043
- SUSE-SU-2015:1043
- openSUSE-SU-2015:1047
- openSUSE-SU-2015:1047
- openSUSE-SU-2015:1061
- openSUSE-SU-2015:1061
- RHSA-2015:1086
- RHSA-2015:1086
- 75080
- 75080
- 1032519
- 1032519
- https://helpx.adobe.com/security/products/flash-player/apsb15-11.html
- https://helpx.adobe.com/security/products/flash-player/apsb15-11.html
- GLSA-201506-01
- GLSA-201506-01
Modified: 2024-11-21
CVE-2015-3099
Adobe Flash Player before 13.0.0.292 and 14.x through 18.x before 18.0.0.160 on Windows and OS X and before 11.2.202.466 on Linux, Adobe AIR before 18.0.0.144 on Windows and before 18.0.0.143 on OS X and Android, Adobe AIR SDK before 18.0.0.144 on Windows and before 18.0.0.143 on OS X, and Adobe AIR SDK & Compiler before 18.0.0.144 on Windows and before 18.0.0.143 on OS X allow remote attackers to bypass the Same Origin Policy via unspecified vectors, a different vulnerability than CVE-2015-3098 and CVE-2015-3102.
- SUSE-SU-2015:1043
- SUSE-SU-2015:1043
- openSUSE-SU-2015:1047
- openSUSE-SU-2015:1047
- openSUSE-SU-2015:1061
- openSUSE-SU-2015:1061
- RHSA-2015:1086
- RHSA-2015:1086
- 75080
- 75080
- 1032519
- 1032519
- https://helpx.adobe.com/security/products/flash-player/apsb15-11.html
- https://helpx.adobe.com/security/products/flash-player/apsb15-11.html
- GLSA-201506-01
- GLSA-201506-01
Modified: 2024-11-21
CVE-2015-3100
Stack-based buffer overflow in Adobe Flash Player before 13.0.0.292 and 14.x through 18.x before 18.0.0.160 on Windows and OS X and before 11.2.202.466 on Linux, Adobe AIR before 18.0.0.144 on Windows and before 18.0.0.143 on OS X and Android, Adobe AIR SDK before 18.0.0.144 on Windows and before 18.0.0.143 on OS X, and Adobe AIR SDK & Compiler before 18.0.0.144 on Windows and before 18.0.0.143 on OS X allows attackers to execute arbitrary code via unspecified vectors.
- SUSE-SU-2015:1043
- SUSE-SU-2015:1043
- openSUSE-SU-2015:1047
- openSUSE-SU-2015:1047
- openSUSE-SU-2015:1061
- openSUSE-SU-2015:1061
- RHSA-2015:1086
- RHSA-2015:1086
- 75085
- 75085
- 1032519
- 1032519
- https://helpx.adobe.com/security/products/flash-player/apsb15-11.html
- https://helpx.adobe.com/security/products/flash-player/apsb15-11.html
- GLSA-201506-01
- GLSA-201506-01
Modified: 2024-11-21
CVE-2015-3101
The Flash broker in Adobe Flash Player before 13.0.0.292 and 14.x through 18.x before 18.0.0.160 on Windows and OS X and before 11.2.202.466 on Linux, Adobe AIR before 18.0.0.144 on Windows and before 18.0.0.143 on OS X and Android, Adobe AIR SDK before 18.0.0.144 on Windows and before 18.0.0.143 on OS X, and Adobe AIR SDK & Compiler before 18.0.0.144 on Windows and before 18.0.0.143 on OS X, when Internet Explorer is used, allows attackers to perform a transition from Low Integrity to Medium Integrity via unspecified vectors.
Modified: 2024-11-21
CVE-2015-3102
Adobe Flash Player before 13.0.0.292 and 14.x through 18.x before 18.0.0.160 on Windows and OS X and before 11.2.202.466 on Linux, Adobe AIR before 18.0.0.144 on Windows and before 18.0.0.143 on OS X and Android, Adobe AIR SDK before 18.0.0.144 on Windows and before 18.0.0.143 on OS X, and Adobe AIR SDK & Compiler before 18.0.0.144 on Windows and before 18.0.0.143 on OS X allow remote attackers to bypass the Same Origin Policy via unspecified vectors, a different vulnerability than CVE-2015-3098 and CVE-2015-3099.
- SUSE-SU-2015:1043
- SUSE-SU-2015:1043
- openSUSE-SU-2015:1047
- openSUSE-SU-2015:1047
- openSUSE-SU-2015:1061
- openSUSE-SU-2015:1061
- RHSA-2015:1086
- RHSA-2015:1086
- 75080
- 75080
- 1032519
- 1032519
- https://helpx.adobe.com/security/products/flash-player/apsb15-11.html
- https://helpx.adobe.com/security/products/flash-player/apsb15-11.html
- GLSA-201506-01
- GLSA-201506-01
Modified: 2024-11-21
CVE-2015-3103
Use-after-free vulnerability in Adobe Flash Player before 13.0.0.292 and 14.x through 18.x before 18.0.0.160 on Windows and OS X and before 11.2.202.466 on Linux, Adobe AIR before 18.0.0.144 on Windows and before 18.0.0.143 on OS X and Android, Adobe AIR SDK before 18.0.0.144 on Windows and before 18.0.0.143 on OS X, and Adobe AIR SDK & Compiler before 18.0.0.144 on Windows and before 18.0.0.143 on OS X allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2015-3106 and CVE-2015-3107.
- SUSE-SU-2015:1043
- SUSE-SU-2015:1043
- openSUSE-SU-2015:1047
- openSUSE-SU-2015:1047
- openSUSE-SU-2015:1061
- openSUSE-SU-2015:1061
- RHSA-2015:1086
- RHSA-2015:1086
- 75087
- 75087
- 1032519
- 1032519
- https://helpx.adobe.com/security/products/flash-player/apsb15-11.html
- https://helpx.adobe.com/security/products/flash-player/apsb15-11.html
- GLSA-201506-01
- GLSA-201506-01
Modified: 2024-11-21
CVE-2015-3104
Integer overflow in Adobe Flash Player before 13.0.0.292 and 14.x through 18.x before 18.0.0.160 on Windows and OS X and before 11.2.202.466 on Linux, Adobe AIR before 18.0.0.144 on Windows and before 18.0.0.143 on OS X and Android, Adobe AIR SDK before 18.0.0.144 on Windows and before 18.0.0.143 on OS X, and Adobe AIR SDK & Compiler before 18.0.0.144 on Windows and before 18.0.0.143 on OS X allows attackers to execute arbitrary code via unspecified vectors.
- SUSE-SU-2015:1043
- SUSE-SU-2015:1043
- openSUSE-SU-2015:1047
- openSUSE-SU-2015:1047
- openSUSE-SU-2015:1061
- openSUSE-SU-2015:1061
- RHSA-2015:1086
- RHSA-2015:1086
- 75081
- 75081
- 1032519
- 1032519
- https://helpx.adobe.com/security/products/flash-player/apsb15-11.html
- https://helpx.adobe.com/security/products/flash-player/apsb15-11.html
- GLSA-201506-01
- GLSA-201506-01
Modified: 2024-11-21
CVE-2015-3105
Adobe Flash Player before 13.0.0.292 and 14.x through 18.x before 18.0.0.160 on Windows and OS X and before 11.2.202.466 on Linux, Adobe AIR before 18.0.0.144 on Windows and before 18.0.0.143 on OS X and Android, Adobe AIR SDK before 18.0.0.144 on Windows and before 18.0.0.143 on OS X, and Adobe AIR SDK & Compiler before 18.0.0.144 on Windows and before 18.0.0.143 on OS X allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors.
- SUSE-SU-2015:1043
- SUSE-SU-2015:1043
- openSUSE-SU-2015:1047
- openSUSE-SU-2015:1047
- openSUSE-SU-2015:1061
- openSUSE-SU-2015:1061
- RHSA-2015:1086
- RHSA-2015:1086
- 75086
- 75086
- 1032519
- 1032519
- https://helpx.adobe.com/security/products/flash-player/apsb15-11.html
- https://helpx.adobe.com/security/products/flash-player/apsb15-11.html
- GLSA-201506-01
- GLSA-201506-01
Modified: 2024-11-21
CVE-2015-3106
Use-after-free vulnerability in Adobe Flash Player before 13.0.0.292 and 14.x through 18.x before 18.0.0.160 on Windows and OS X and before 11.2.202.466 on Linux, Adobe AIR before 18.0.0.144 on Windows and before 18.0.0.143 on OS X and Android, Adobe AIR SDK before 18.0.0.144 on Windows and before 18.0.0.143 on OS X, and Adobe AIR SDK & Compiler before 18.0.0.144 on Windows and before 18.0.0.143 on OS X allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2015-3103 and CVE-2015-3107.
- SUSE-SU-2015:1043
- SUSE-SU-2015:1043
- openSUSE-SU-2015:1047
- openSUSE-SU-2015:1047
- openSUSE-SU-2015:1061
- openSUSE-SU-2015:1061
- RHSA-2015:1086
- RHSA-2015:1086
- 75087
- 75087
- 1032519
- 1032519
- https://helpx.adobe.com/security/products/flash-player/apsb15-11.html
- https://helpx.adobe.com/security/products/flash-player/apsb15-11.html
- GLSA-201506-01
- GLSA-201506-01
- 37847
- 37847
Modified: 2024-11-21
CVE-2015-3107
Use-after-free vulnerability in Adobe Flash Player before 13.0.0.292 and 14.x through 18.x before 18.0.0.160 on Windows and OS X and before 11.2.202.466 on Linux, Adobe AIR before 18.0.0.144 on Windows and before 18.0.0.143 on OS X and Android, Adobe AIR SDK before 18.0.0.144 on Windows and before 18.0.0.143 on OS X, and Adobe AIR SDK & Compiler before 18.0.0.144 on Windows and before 18.0.0.143 on OS X allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2015-3103 and CVE-2015-3106.
- SUSE-SU-2015:1043
- SUSE-SU-2015:1043
- openSUSE-SU-2015:1047
- openSUSE-SU-2015:1047
- openSUSE-SU-2015:1061
- openSUSE-SU-2015:1061
- openSUSE-SU-2015:1781
- openSUSE-SU-2015:1781
- RHSA-2015:1086
- RHSA-2015:1086
- 75087
- 75087
- 1032519
- 1032519
- https://helpx.adobe.com/security/products/flash-player/apsb15-11.html
- https://helpx.adobe.com/security/products/flash-player/apsb15-11.html
- GLSA-201506-01
- GLSA-201506-01
- GLSA-201508-01
- GLSA-201508-01
- 37850
- 37850
Modified: 2024-11-21
CVE-2015-3108
Adobe Flash Player before 13.0.0.292 and 14.x through 18.x before 18.0.0.160 on Windows and OS X and before 11.2.202.466 on Linux, Adobe AIR before 18.0.0.144 on Windows and before 18.0.0.143 on OS X and Android, Adobe AIR SDK before 18.0.0.144 on Windows and before 18.0.0.143 on OS X, and Adobe AIR SDK & Compiler before 18.0.0.144 on Windows and before 18.0.0.143 on OS X do not properly restrict discovery of memory addresses, which allows attackers to bypass the ASLR protection mechanism via unspecified vectors.
- SUSE-SU-2015:1043
- SUSE-SU-2015:1043
- openSUSE-SU-2015:1047
- openSUSE-SU-2015:1047
- openSUSE-SU-2015:1061
- openSUSE-SU-2015:1061
- RHSA-2015:1086
- RHSA-2015:1086
- 75084
- 75084
- 1032519
- 1032519
- https://helpx.adobe.com/security/products/flash-player/apsb15-11.html
- https://helpx.adobe.com/security/products/flash-player/apsb15-11.html
- GLSA-201506-01
- GLSA-201506-01