ALT-BU-2020-3975-1
Branch sisyphus update bulletin.
Closed vulnerabilities
Modified: 2024-11-21
CVE-2018-21035
In Qt through 5.14.1, the WebSocket implementation accepts up to 2GB for frames and 2GB for messages. Smaller limits cannot be configured. This makes it easier for attackers to cause a denial of service (memory consumption).
Modified: 2024-11-21
CVE-2020-0569
Out of bounds write in Intel(R) PROSet/Wireless WiFi products on Windows 10 may allow an authenticated user to potentially enable denial of service via local access.
Package qt5-declarative updated to version 5.15.0-alt1 for branch sisyphus in task 255036.
Closed vulnerabilities
Modified: 2024-11-21
CVE-2018-21035
In Qt through 5.14.1, the WebSocket implementation accepts up to 2GB for frames and 2GB for messages. Smaller limits cannot be configured. This makes it easier for attackers to cause a denial of service (memory consumption).
Modified: 2024-11-21
CVE-2020-0569
Out of bounds write in Intel(R) PROSet/Wireless WiFi products on Windows 10 may allow an authenticated user to potentially enable denial of service via local access.
Package qt5-xmlpatterns updated to version 5.15.0-alt1 for branch sisyphus in task 255036.
Closed vulnerabilities
Modified: 2024-11-21
CVE-2018-21035
In Qt through 5.14.1, the WebSocket implementation accepts up to 2GB for frames and 2GB for messages. Smaller limits cannot be configured. This makes it easier for attackers to cause a denial of service (memory consumption).
Modified: 2024-11-21
CVE-2020-0569
Out of bounds write in Intel(R) PROSet/Wireless WiFi products on Windows 10 may allow an authenticated user to potentially enable denial of service via local access.
Closed vulnerabilities
Modified: 2024-11-21
CVE-2018-21035
In Qt through 5.14.1, the WebSocket implementation accepts up to 2GB for frames and 2GB for messages. Smaller limits cannot be configured. This makes it easier for attackers to cause a denial of service (memory consumption).
Modified: 2024-11-21
CVE-2020-0569
Out of bounds write in Intel(R) PROSet/Wireless WiFi products on Windows 10 may allow an authenticated user to potentially enable denial of service via local access.
Package qt5-websockets updated to version 5.15.0-alt1 for branch sisyphus in task 255036.
Closed vulnerabilities
Modified: 2024-11-21
CVE-2018-21035
In Qt through 5.14.1, the WebSocket implementation accepts up to 2GB for frames and 2GB for messages. Smaller limits cannot be configured. This makes it easier for attackers to cause a denial of service (memory consumption).
Modified: 2024-11-21
CVE-2020-0569
Out of bounds write in Intel(R) PROSet/Wireless WiFi products on Windows 10 may allow an authenticated user to potentially enable denial of service via local access.
Package qt5-multimedia updated to version 5.15.0-alt1 for branch sisyphus in task 255036.
Closed vulnerabilities
Modified: 2024-11-21
CVE-2018-21035
In Qt through 5.14.1, the WebSocket implementation accepts up to 2GB for frames and 2GB for messages. Smaller limits cannot be configured. This makes it easier for attackers to cause a denial of service (memory consumption).
Modified: 2024-11-21
CVE-2020-0569
Out of bounds write in Intel(R) PROSet/Wireless WiFi products on Windows 10 may allow an authenticated user to potentially enable denial of service via local access.
Package qt5-serialport updated to version 5.15.0-alt1 for branch sisyphus in task 255036.
Closed vulnerabilities
Modified: 2024-11-21
CVE-2018-21035
In Qt through 5.14.1, the WebSocket implementation accepts up to 2GB for frames and 2GB for messages. Smaller limits cannot be configured. This makes it easier for attackers to cause a denial of service (memory consumption).
Modified: 2024-11-21
CVE-2020-0569
Out of bounds write in Intel(R) PROSet/Wireless WiFi products on Windows 10 may allow an authenticated user to potentially enable denial of service via local access.
Package qt5-location updated to version 5.15.0-alt1 for branch sisyphus in task 255036.
Closed vulnerabilities
Modified: 2024-11-21
CVE-2018-21035
In Qt through 5.14.1, the WebSocket implementation accepts up to 2GB for frames and 2GB for messages. Smaller limits cannot be configured. This makes it easier for attackers to cause a denial of service (memory consumption).
Modified: 2024-11-21
CVE-2020-0569
Out of bounds write in Intel(R) PROSet/Wireless WiFi products on Windows 10 may allow an authenticated user to potentially enable denial of service via local access.
Package qt5-sensors updated to version 5.15.0-alt1 for branch sisyphus in task 255036.
Closed vulnerabilities
Modified: 2024-11-21
CVE-2018-21035
In Qt through 5.14.1, the WebSocket implementation accepts up to 2GB for frames and 2GB for messages. Smaller limits cannot be configured. This makes it easier for attackers to cause a denial of service (memory consumption).
Modified: 2024-11-21
CVE-2020-0569
Out of bounds write in Intel(R) PROSet/Wireless WiFi products on Windows 10 may allow an authenticated user to potentially enable denial of service via local access.
Package qt5-webchannel updated to version 5.15.0-alt1 for branch sisyphus in task 255036.
Closed vulnerabilities
Modified: 2024-11-21
CVE-2018-21035
In Qt through 5.14.1, the WebSocket implementation accepts up to 2GB for frames and 2GB for messages. Smaller limits cannot be configured. This makes it easier for attackers to cause a denial of service (memory consumption).
Modified: 2024-11-21
CVE-2020-0569
Out of bounds write in Intel(R) PROSet/Wireless WiFi products on Windows 10 may allow an authenticated user to potentially enable denial of service via local access.
Package qt5-quickcontrols updated to version 5.15.0-alt1 for branch sisyphus in task 255036.
Closed vulnerabilities
Modified: 2024-11-21
CVE-2018-21035
In Qt through 5.14.1, the WebSocket implementation accepts up to 2GB for frames and 2GB for messages. Smaller limits cannot be configured. This makes it easier for attackers to cause a denial of service (memory consumption).
Modified: 2024-11-21
CVE-2020-0569
Out of bounds write in Intel(R) PROSet/Wireless WiFi products on Windows 10 may allow an authenticated user to potentially enable denial of service via local access.
Package qt5-script updated to version 5.15.0-alt1 for branch sisyphus in task 255036.
Closed vulnerabilities
Modified: 2024-11-21
CVE-2018-21035
In Qt through 5.14.1, the WebSocket implementation accepts up to 2GB for frames and 2GB for messages. Smaller limits cannot be configured. This makes it easier for attackers to cause a denial of service (memory consumption).
Modified: 2024-11-21
CVE-2020-0569
Out of bounds write in Intel(R) PROSet/Wireless WiFi products on Windows 10 may allow an authenticated user to potentially enable denial of service via local access.
Package qt5-x11extras updated to version 5.15.0-alt1 for branch sisyphus in task 255036.
Closed vulnerabilities
Modified: 2024-11-21
CVE-2018-21035
In Qt through 5.14.1, the WebSocket implementation accepts up to 2GB for frames and 2GB for messages. Smaller limits cannot be configured. This makes it easier for attackers to cause a denial of service (memory consumption).
Modified: 2024-11-21
CVE-2020-0569
Out of bounds write in Intel(R) PROSet/Wireless WiFi products on Windows 10 may allow an authenticated user to potentially enable denial of service via local access.
Package qt5-imageformats updated to version 5.15.0-alt1 for branch sisyphus in task 255036.
Closed vulnerabilities
Modified: 2024-11-21
CVE-2018-21035
In Qt through 5.14.1, the WebSocket implementation accepts up to 2GB for frames and 2GB for messages. Smaller limits cannot be configured. This makes it easier for attackers to cause a denial of service (memory consumption).
Modified: 2024-11-21
CVE-2020-0569
Out of bounds write in Intel(R) PROSet/Wireless WiFi products on Windows 10 may allow an authenticated user to potentially enable denial of service via local access.
Closed vulnerabilities
Modified: 2024-11-21
CVE-2018-21035
In Qt through 5.14.1, the WebSocket implementation accepts up to 2GB for frames and 2GB for messages. Smaller limits cannot be configured. This makes it easier for attackers to cause a denial of service (memory consumption).
Modified: 2024-11-21
CVE-2020-0569
Out of bounds write in Intel(R) PROSet/Wireless WiFi products on Windows 10 may allow an authenticated user to potentially enable denial of service via local access.
Package qt5-quickcontrols2 updated to version 5.15.0-alt1 for branch sisyphus in task 255036.
Closed vulnerabilities
Modified: 2024-11-21
CVE-2018-21035
In Qt through 5.14.1, the WebSocket implementation accepts up to 2GB for frames and 2GB for messages. Smaller limits cannot be configured. This makes it easier for attackers to cause a denial of service (memory consumption).
Modified: 2024-11-21
CVE-2020-0569
Out of bounds write in Intel(R) PROSet/Wireless WiFi products on Windows 10 may allow an authenticated user to potentially enable denial of service via local access.
Package qt5-connectivity updated to version 5.15.0-alt1 for branch sisyphus in task 255036.
Closed vulnerabilities
Modified: 2024-11-21
CVE-2018-21035
In Qt through 5.14.1, the WebSocket implementation accepts up to 2GB for frames and 2GB for messages. Smaller limits cannot be configured. This makes it easier for attackers to cause a denial of service (memory consumption).
Modified: 2024-11-21
CVE-2020-0569
Out of bounds write in Intel(R) PROSet/Wireless WiFi products on Windows 10 may allow an authenticated user to potentially enable denial of service via local access.
Package qt5-serialbus updated to version 5.15.0-alt1 for branch sisyphus in task 255036.
Closed vulnerabilities
Modified: 2024-11-21
CVE-2018-21035
In Qt through 5.14.1, the WebSocket implementation accepts up to 2GB for frames and 2GB for messages. Smaller limits cannot be configured. This makes it easier for attackers to cause a denial of service (memory consumption).
Modified: 2024-11-21
CVE-2020-0569
Out of bounds write in Intel(R) PROSet/Wireless WiFi products on Windows 10 may allow an authenticated user to potentially enable denial of service via local access.
Package qt5-translations updated to version 5.15.0-alt1 for branch sisyphus in task 255036.
Closed vulnerabilities
Modified: 2024-11-21
CVE-2018-21035
In Qt through 5.14.1, the WebSocket implementation accepts up to 2GB for frames and 2GB for messages. Smaller limits cannot be configured. This makes it easier for attackers to cause a denial of service (memory consumption).
Modified: 2024-11-21
CVE-2020-0569
Out of bounds write in Intel(R) PROSet/Wireless WiFi products on Windows 10 may allow an authenticated user to potentially enable denial of service via local access.
Package qt5-graphicaleffects updated to version 5.15.0-alt1 for branch sisyphus in task 255036.
Closed vulnerabilities
Modified: 2024-11-21
CVE-2018-21035
In Qt through 5.14.1, the WebSocket implementation accepts up to 2GB for frames and 2GB for messages. Smaller limits cannot be configured. This makes it easier for attackers to cause a denial of service (memory consumption).
Modified: 2024-11-21
CVE-2020-0569
Out of bounds write in Intel(R) PROSet/Wireless WiFi products on Windows 10 may allow an authenticated user to potentially enable denial of service via local access.
Closed vulnerabilities
Modified: 2024-11-21
CVE-2018-21035
In Qt through 5.14.1, the WebSocket implementation accepts up to 2GB for frames and 2GB for messages. Smaller limits cannot be configured. This makes it easier for attackers to cause a denial of service (memory consumption).
Modified: 2024-11-21
CVE-2020-0569
Out of bounds write in Intel(R) PROSet/Wireless WiFi products on Windows 10 may allow an authenticated user to potentially enable denial of service via local access.
Package qt5-wayland updated to version 5.15.0-alt1 for branch sisyphus in task 255036.
Closed vulnerabilities
Modified: 2024-11-21
CVE-2018-21035
In Qt through 5.14.1, the WebSocket implementation accepts up to 2GB for frames and 2GB for messages. Smaller limits cannot be configured. This makes it easier for attackers to cause a denial of service (memory consumption).
Modified: 2024-11-21
CVE-2020-0569
Out of bounds write in Intel(R) PROSet/Wireless WiFi products on Windows 10 may allow an authenticated user to potentially enable denial of service via local access.
Package qt5-webengine updated to version 5.15.0-alt2 for branch sisyphus in task 255036.
Closed vulnerabilities
Modified: 2024-11-21
CVE-2018-21035
In Qt through 5.14.1, the WebSocket implementation accepts up to 2GB for frames and 2GB for messages. Smaller limits cannot be configured. This makes it easier for attackers to cause a denial of service (memory consumption).
Modified: 2024-11-21
CVE-2020-0569
Out of bounds write in Intel(R) PROSet/Wireless WiFi products on Windows 10 may allow an authenticated user to potentially enable denial of service via local access.
Closed vulnerabilities
Modified: 2024-11-21
CVE-2018-21035
In Qt through 5.14.1, the WebSocket implementation accepts up to 2GB for frames and 2GB for messages. Smaller limits cannot be configured. This makes it easier for attackers to cause a denial of service (memory consumption).
Modified: 2024-11-21
CVE-2020-0569
Out of bounds write in Intel(R) PROSet/Wireless WiFi products on Windows 10 may allow an authenticated user to potentially enable denial of service via local access.
Package qt5-virtualkeyboard updated to version 5.15.0-alt1 for branch sisyphus in task 255036.
Closed vulnerabilities
Modified: 2024-11-21
CVE-2018-21035
In Qt through 5.14.1, the WebSocket implementation accepts up to 2GB for frames and 2GB for messages. Smaller limits cannot be configured. This makes it easier for attackers to cause a denial of service (memory consumption).
Modified: 2024-11-21
CVE-2020-0569
Out of bounds write in Intel(R) PROSet/Wireless WiFi products on Windows 10 may allow an authenticated user to potentially enable denial of service via local access.
Closed vulnerabilities
Modified: 2024-11-21
CVE-2018-21035
In Qt through 5.14.1, the WebSocket implementation accepts up to 2GB for frames and 2GB for messages. Smaller limits cannot be configured. This makes it easier for attackers to cause a denial of service (memory consumption).
Modified: 2024-11-21
CVE-2020-0569
Out of bounds write in Intel(R) PROSet/Wireless WiFi products on Windows 10 may allow an authenticated user to potentially enable denial of service via local access.
Package qt5-charts updated to version 5.15.0-alt1 for branch sisyphus in task 255036.
Closed vulnerabilities
Modified: 2024-11-21
CVE-2018-21035
In Qt through 5.14.1, the WebSocket implementation accepts up to 2GB for frames and 2GB for messages. Smaller limits cannot be configured. This makes it easier for attackers to cause a denial of service (memory consumption).
Modified: 2024-11-21
CVE-2020-0569
Out of bounds write in Intel(R) PROSet/Wireless WiFi products on Windows 10 may allow an authenticated user to potentially enable denial of service via local access.
Package qt5-speech updated to version 5.15.0-alt1 for branch sisyphus in task 255036.
Closed vulnerabilities
Modified: 2024-11-21
CVE-2018-21035
In Qt through 5.14.1, the WebSocket implementation accepts up to 2GB for frames and 2GB for messages. Smaller limits cannot be configured. This makes it easier for attackers to cause a denial of service (memory consumption).
Modified: 2024-11-21
CVE-2020-0569
Out of bounds write in Intel(R) PROSet/Wireless WiFi products on Windows 10 may allow an authenticated user to potentially enable denial of service via local access.
Package qt5-datavis3d updated to version 5.15.0-alt1 for branch sisyphus in task 255036.
Closed vulnerabilities
Modified: 2024-11-21
CVE-2018-21035
In Qt through 5.14.1, the WebSocket implementation accepts up to 2GB for frames and 2GB for messages. Smaller limits cannot be configured. This makes it easier for attackers to cause a denial of service (memory consumption).
Modified: 2024-11-21
CVE-2020-0569
Out of bounds write in Intel(R) PROSet/Wireless WiFi products on Windows 10 may allow an authenticated user to potentially enable denial of service via local access.
Package qt5-gamepad updated to version 5.15.0-alt1 for branch sisyphus in task 255036.
Closed vulnerabilities
Modified: 2024-11-21
CVE-2018-21035
In Qt through 5.14.1, the WebSocket implementation accepts up to 2GB for frames and 2GB for messages. Smaller limits cannot be configured. This makes it easier for attackers to cause a denial of service (memory consumption).
Modified: 2024-11-21
CVE-2020-0569
Out of bounds write in Intel(R) PROSet/Wireless WiFi products on Windows 10 may allow an authenticated user to potentially enable denial of service via local access.
Package qt5-webview updated to version 5.15.0-alt1 for branch sisyphus in task 255036.
Closed vulnerabilities
Modified: 2024-11-21
CVE-2018-21035
In Qt through 5.14.1, the WebSocket implementation accepts up to 2GB for frames and 2GB for messages. Smaller limits cannot be configured. This makes it easier for attackers to cause a denial of service (memory consumption).
Modified: 2024-11-21
CVE-2020-0569
Out of bounds write in Intel(R) PROSet/Wireless WiFi products on Windows 10 may allow an authenticated user to potentially enable denial of service via local access.
Package qt5-networkauth updated to version 5.15.0-alt1 for branch sisyphus in task 255036.
Closed vulnerabilities
Modified: 2024-11-21
CVE-2018-21035
In Qt through 5.14.1, the WebSocket implementation accepts up to 2GB for frames and 2GB for messages. Smaller limits cannot be configured. This makes it easier for attackers to cause a denial of service (memory consumption).
Modified: 2024-11-21
CVE-2020-0569
Out of bounds write in Intel(R) PROSet/Wireless WiFi products on Windows 10 may allow an authenticated user to potentially enable denial of service via local access.
Package qt5-remoteobjects updated to version 5.15.0-alt1 for branch sisyphus in task 255036.
Closed vulnerabilities
Modified: 2024-11-21
CVE-2018-21035
In Qt through 5.14.1, the WebSocket implementation accepts up to 2GB for frames and 2GB for messages. Smaller limits cannot be configured. This makes it easier for attackers to cause a denial of service (memory consumption).
Modified: 2024-11-21
CVE-2020-0569
Out of bounds write in Intel(R) PROSet/Wireless WiFi products on Windows 10 may allow an authenticated user to potentially enable denial of service via local access.
Closed vulnerabilities
BDU:2020-03916
Уязвимость библиотеки предоставления клиентского API для X Window System libX11, вызванная целочисленным переполнением, позволяющая нарушителю оказать воздействие на конфиденциальность, целостность и доступность защищаемой информации
Modified: 2024-11-21
CVE-2020-14344
An integer overflow leading to a heap-buffer overflow was found in The X Input Method (XIM) client was implemented in libX11 before version 1.6.10. As per upstream this is security relevant when setuid programs call XIM client functions while running with elevated privileges. No such programs are shipped with Red Hat Enterprise Linux.
- openSUSE-SU-2020:1162
- openSUSE-SU-2020:1162
- openSUSE-SU-2020:1164
- openSUSE-SU-2020:1164
- openSUSE-SU-2020:1182
- openSUSE-SU-2020:1182
- openSUSE-SU-2020:1198
- openSUSE-SU-2020:1198
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2020-14344
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2020-14344
- FEDORA-2020-9a0b272cc1
- FEDORA-2020-9a0b272cc1
- FEDORA-2020-cf0afbd27e
- FEDORA-2020-cf0afbd27e
- FEDORA-2020-eba554b9d5
- FEDORA-2020-eba554b9d5
- https://lists.x.org/archives/xorg-announce/2020-July/003050.html
- https://lists.x.org/archives/xorg-announce/2020-July/003050.html
- GLSA-202008-18
- GLSA-202008-18
- USN-4487-1
- USN-4487-1
- USN-4487-2
- USN-4487-2
- https://www.openwall.com/lists/oss-security/2020/07/31/1
- https://www.openwall.com/lists/oss-security/2020/07/31/1