vulnerability

CentOS Linux: CVE-2015-9541: Moderate: qt5-qtbase and qt5-qtwebsockets security and bug fix update (CESA-2020:4690)

Severity
5
CVSS
(AV:N/AC:L/Au:N/C:N/I:N/A:P)
Published
Jan 24, 2020
Added
Nov 5, 2020
Modified
May 25, 2023

Description

Qt through 5.14 allows an exponential XML entity expansion attack via a crafted SVG document that is mishandled in QXmlStreamReader, a related issue to CVE-2003-1564.

Solution(s)

centos-upgrade-qt5-assistantcentos-upgrade-qt5-assistant-debuginfocentos-upgrade-qt5-designercentos-upgrade-qt5-designer-debuginfocentos-upgrade-qt5-doctoolscentos-upgrade-qt5-doctools-debuginfocentos-upgrade-qt5-linguistcentos-upgrade-qt5-linguist-debuginfocentos-upgrade-qt5-qdbusviewercentos-upgrade-qt5-qdbusviewer-debuginfocentos-upgrade-qt5-qtbasecentos-upgrade-qt5-qtbase-commoncentos-upgrade-qt5-qtbase-debuginfocentos-upgrade-qt5-qtbase-debugsourcecentos-upgrade-qt5-qtbase-develcentos-upgrade-qt5-qtbase-devel-debuginfocentos-upgrade-qt5-qtbase-examplescentos-upgrade-qt5-qtbase-examples-debuginfocentos-upgrade-qt5-qtbase-guicentos-upgrade-qt5-qtbase-gui-debuginfocentos-upgrade-qt5-qtbase-mysqlcentos-upgrade-qt5-qtbase-mysql-debuginfocentos-upgrade-qt5-qtbase-odbccentos-upgrade-qt5-qtbase-odbc-debuginfocentos-upgrade-qt5-qtbase-postgresqlcentos-upgrade-qt5-qtbase-postgresql-debuginfocentos-upgrade-qt5-qtbase-private-develcentos-upgrade-qt5-qtbase-tests-debuginfocentos-upgrade-qt5-qttoolscentos-upgrade-qt5-qttools-commoncentos-upgrade-qt5-qttools-debuginfocentos-upgrade-qt5-qttools-debugsourcecentos-upgrade-qt5-qttools-develcentos-upgrade-qt5-qttools-devel-debuginfocentos-upgrade-qt5-qttools-examplescentos-upgrade-qt5-qttools-examples-debuginfocentos-upgrade-qt5-qttools-libs-designercentos-upgrade-qt5-qttools-libs-designer-debuginfocentos-upgrade-qt5-qttools-libs-designercomponentscentos-upgrade-qt5-qttools-libs-designercomponents-debuginfocentos-upgrade-qt5-qttools-libs-helpcentos-upgrade-qt5-qttools-libs-help-debuginfocentos-upgrade-qt5-qttools-tests-debuginfocentos-upgrade-qt5-qtwebsocketscentos-upgrade-qt5-qtwebsockets-debuginfocentos-upgrade-qt5-qtwebsockets-debugsourcecentos-upgrade-qt5-qtwebsockets-develcentos-upgrade-qt5-qtwebsockets-devel-debuginfocentos-upgrade-qt5-qtwebsockets-examplescentos-upgrade-qt5-qtwebsockets-examples-debuginfocentos-upgrade-qt5-qtwebsockets-tests-debuginfo
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.