CVE-2022-40983
12.01.2023, 17:15
An integer overflow vulnerability exists in the QML QtScript Reflect API of Qt Project Qt 6.3.2. A specially-crafted javascript code can trigger an integer overflow during memory allocation, which can lead to arbitrary code execution. Target application would need to access a malicious web page to trigger this vulnerability.Enginsight
Vendor | Product | Version |
---|---|---|
qt | qt | 6.3.2 |
𝑥
= Vulnerable software versions

Debian Releases
Debian Product | |||||||||
---|---|---|---|---|---|---|---|---|---|
qt6-declarative |
| ||||||||
qtdeclarative-opensource-src |
| ||||||||
qtdeclarative-opensource-src-gles |
|

Ubuntu Releases