ALT-PU-2014-1843-1
Closed vulnerabilities
Modified: 2024-11-21
CVE-2015-1858
Multiple buffer overflows in gui/image/qbmphandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remote attackers to cause a denial of service (segmentation fault and crash) and possibly execute arbitrary code via a crafted BMP image.
- FEDORA-2015-6114
- FEDORA-2015-6114
- FEDORA-2015-6123
- FEDORA-2015-6123
- FEDORA-2015-6315
- FEDORA-2015-6315
- FEDORA-2015-6364
- FEDORA-2015-6364
- FEDORA-2015-6252
- FEDORA-2015-6252
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- 74309
- 74309
- USN-2626-1
- USN-2626-1
- https://codereview.qt-project.org/#/c/108312/
- https://codereview.qt-project.org/#/c/108312/
- GLSA-201603-10
- GLSA-201603-10
Modified: 2024-11-21
CVE-2015-1859
Multiple buffer overflows in plugins/imageformats/ico/qicohandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remote attackers to cause a denial of service (segmentation fault and crash) and possibly execute arbitrary code via a crafted ICO image.
- FEDORA-2015-6114
- FEDORA-2015-6114
- FEDORA-2015-6123
- FEDORA-2015-6123
- FEDORA-2015-6315
- FEDORA-2015-6315
- FEDORA-2015-6364
- FEDORA-2015-6364
- FEDORA-2015-6252
- FEDORA-2015-6252
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- 74307
- 74307
- 74310
- 74310
- USN-2626-1
- USN-2626-1
- GLSA-201603-10
- GLSA-201603-10
Modified: 2024-11-21
CVE-2015-1860
Multiple buffer overflows in gui/image/qgifhandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remote attackers to cause a denial of service (segmentation fault) and possibly execute arbitrary code via a crafted GIF image.
- FEDORA-2015-6114
- FEDORA-2015-6114
- FEDORA-2015-6123
- FEDORA-2015-6123
- FEDORA-2015-6613
- FEDORA-2015-6613
- FEDORA-2015-6315
- FEDORA-2015-6315
- FEDORA-2015-6364
- FEDORA-2015-6364
- FEDORA-2015-6252
- FEDORA-2015-6252
- FEDORA-2015-6661
- FEDORA-2015-6661
- FEDORA-2015-6573
- FEDORA-2015-6573
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- 74302
- 74302
- USN-2626-1
- USN-2626-1
- https://codereview.qt-project.org/#/c/108248/
- https://codereview.qt-project.org/#/c/108248/
- GLSA-201603-10
- GLSA-201603-10
Modified: 2024-11-21
CVE-2015-7298
ownCloud Desktop Client before 2.0.1, when compiled with a Qt release after 5.3.x, does not call QNetworkReply::ignoreSslErrors with the list of errors to be ignored, which makes it easier for remote attackers to conduct man-in-the-middle (MITM) attacks by leveraging a server using a self-signed certificate. NOTE: this vulnerability exists because of a partial CVE-2015-4456 regression.
Modified: 2024-11-21
CVE-2017-15011
The named pipes in qtsingleapp in Qt 5.x, as used in qBittorrent and SugarSync, are configured for remote access and allow remote attackers to cause a denial of service (application crash) via an unspecified string.