CVE-2019-18281
23.10.2019, 15:15
An out-of-bounds memory access in the generateDirectionalRuns() function in qtextengine.cpp in Qt qtbase 5.11.x and 5.12.x before 5.12.5 allows attackers to cause a denial of service by crashing an application via a text file containing many directional characters.Enginsight
| Vendor | Product | Version |
|---|---|---|
| qt | qtbase | 5.11.0 ≤ 𝑥 ≤ 5.11.3 |
| qt | qtbase | 5.12.0 ≤ 𝑥 < 5.12.5 |
| debian | debian_linux | 9.0 |
| debian | debian_linux | 10.0 |
𝑥
= Vulnerable software versions
Debian Releases
Debian Product | |||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| qtbase-opensource-src |
| ||||||||||||||
| qtbase-opensource-src-gles |
|
Ubuntu Releases
Common Weakness Enumeration
References