ALT-PU-2015-1513-1
Package qt5-quickcontrols updated to version 5.4.2-alt1 for branch sisyphus in task 145230.
Closed vulnerabilities
Modified: 2024-11-21
CVE-2015-0295
The BMP decoder in QtGui in QT before 5.5 does not properly calculate the masks used to extract the color components, which allows remote attackers to cause a denial of service (divide-by-zero and crash) via a crafted BMP file.
- FEDORA-2015-2895
- FEDORA-2015-2895
- FEDORA-2015-2897
- FEDORA-2015-2897
- FEDORA-2015-2866
- FEDORA-2015-2866
- FEDORA-2015-2869
- FEDORA-2015-2869
- FEDORA-2015-2886
- FEDORA-2015-2886
- FEDORA-2015-2901
- FEDORA-2015-2901
- openSUSE-SU-2015:0573
- openSUSE-SU-2015:0573
- [Announce] 20150227 Qt Security Advisory: DoS vulnerability in the BMP image handler
- [Announce] 20150227 Qt Security Advisory: DoS vulnerability in the BMP image handler
- 73029
- 73029
- USN-2626-1
- USN-2626-1
Modified: 2024-11-21
CVE-2015-1858
Multiple buffer overflows in gui/image/qbmphandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remote attackers to cause a denial of service (segmentation fault and crash) and possibly execute arbitrary code via a crafted BMP image.
- FEDORA-2015-6114
- FEDORA-2015-6114
- FEDORA-2015-6123
- FEDORA-2015-6123
- FEDORA-2015-6315
- FEDORA-2015-6315
- FEDORA-2015-6364
- FEDORA-2015-6364
- FEDORA-2015-6252
- FEDORA-2015-6252
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- 74309
- 74309
- USN-2626-1
- USN-2626-1
- https://codereview.qt-project.org/#/c/108312/
- https://codereview.qt-project.org/#/c/108312/
- GLSA-201603-10
- GLSA-201603-10
Modified: 2024-11-21
CVE-2015-1859
Multiple buffer overflows in plugins/imageformats/ico/qicohandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remote attackers to cause a denial of service (segmentation fault and crash) and possibly execute arbitrary code via a crafted ICO image.
- FEDORA-2015-6114
- FEDORA-2015-6114
- FEDORA-2015-6123
- FEDORA-2015-6123
- FEDORA-2015-6315
- FEDORA-2015-6315
- FEDORA-2015-6364
- FEDORA-2015-6364
- FEDORA-2015-6252
- FEDORA-2015-6252
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- 74307
- 74307
- 74310
- 74310
- USN-2626-1
- USN-2626-1
- GLSA-201603-10
- GLSA-201603-10
Modified: 2024-11-21
CVE-2015-1860
Multiple buffer overflows in gui/image/qgifhandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remote attackers to cause a denial of service (segmentation fault) and possibly execute arbitrary code via a crafted GIF image.
- FEDORA-2015-6114
- FEDORA-2015-6114
- FEDORA-2015-6123
- FEDORA-2015-6123
- FEDORA-2015-6613
- FEDORA-2015-6613
- FEDORA-2015-6315
- FEDORA-2015-6315
- FEDORA-2015-6364
- FEDORA-2015-6364
- FEDORA-2015-6252
- FEDORA-2015-6252
- FEDORA-2015-6661
- FEDORA-2015-6661
- FEDORA-2015-6573
- FEDORA-2015-6573
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- [Announce] 20150413 Qt Project Security Advisory - Multiple Vulnerabilities in Qt Image Format Handling
- 74302
- 74302
- USN-2626-1
- USN-2626-1
- https://codereview.qt-project.org/#/c/108248/
- https://codereview.qt-project.org/#/c/108248/
- GLSA-201603-10
- GLSA-201603-10
Modified: 2024-11-21
CVE-2015-7298
ownCloud Desktop Client before 2.0.1, when compiled with a Qt release after 5.3.x, does not call QNetworkReply::ignoreSslErrors with the list of errors to be ignored, which makes it easier for remote attackers to conduct man-in-the-middle (MITM) attacks by leveraging a server using a self-signed certificate. NOTE: this vulnerability exists because of a partial CVE-2015-4456 regression.