CVE-2015-9541
24.01.2020, 22:15
Qt through 5.14 allows an exponential XML entity expansion attack via a crafted SVG document that is mishandled in QXmlStreamReader, a related issue to CVE-2003-1564.
| Vendor | Product | Version |
|---|---|---|
| qt | qt | 5.5.0 ≤ 𝑥 < 5.12.8 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| phantomjs |
| ||||||||||||||||||||||||||
| pyside |
| ||||||||||||||||||||||||||
| pyside2 |
| ||||||||||||||||||||||||||
| qt4-x11 |
| ||||||||||||||||||||||||||
| qtbase-opensource-src |
|
References