vulnerability

Red Hat: CVE-2015-9541: CVE-2015-9541 qt: XML entity expansion vulnerability (Multiple Advisories)

Severity
5
CVSS
(AV:N/AC:L/Au:N/C:N/I:N/A:P)
Published
Jan 24, 2020
Added
Nov 5, 2020
Modified
Aug 11, 2025

Description

Qt through 5.14 allows an exponential XML entity expansion attack via a crafted SVG document that is mishandled in QXmlStreamReader, a related issue to CVE-2003-1564.

Solutions

no-fix-redhat-rpm-packageredhat-upgrade-qt5-assistantredhat-upgrade-qt5-assistant-debuginforedhat-upgrade-qt5-designerredhat-upgrade-qt5-designer-debuginforedhat-upgrade-qt5-doctoolsredhat-upgrade-qt5-doctools-debuginforedhat-upgrade-qt5-linguistredhat-upgrade-qt5-linguist-debuginforedhat-upgrade-qt5-qdbusviewerredhat-upgrade-qt5-qdbusviewer-debuginforedhat-upgrade-qt5-qtbaseredhat-upgrade-qt5-qtbase-commonredhat-upgrade-qt5-qtbase-debuginforedhat-upgrade-qt5-qtbase-debugsourceredhat-upgrade-qt5-qtbase-develredhat-upgrade-qt5-qtbase-devel-debuginforedhat-upgrade-qt5-qtbase-examplesredhat-upgrade-qt5-qtbase-examples-debuginforedhat-upgrade-qt5-qtbase-guiredhat-upgrade-qt5-qtbase-gui-debuginforedhat-upgrade-qt5-qtbase-mysqlredhat-upgrade-qt5-qtbase-mysql-debuginforedhat-upgrade-qt5-qtbase-odbcredhat-upgrade-qt5-qtbase-odbc-debuginforedhat-upgrade-qt5-qtbase-postgresqlredhat-upgrade-qt5-qtbase-postgresql-debuginforedhat-upgrade-qt5-qtbase-private-develredhat-upgrade-qt5-qtbase-staticredhat-upgrade-qt5-qtbase-tests-debuginforedhat-upgrade-qt5-qttoolsredhat-upgrade-qt5-qttools-commonredhat-upgrade-qt5-qttools-debuginforedhat-upgrade-qt5-qttools-debugsourceredhat-upgrade-qt5-qttools-develredhat-upgrade-qt5-qttools-devel-debuginforedhat-upgrade-qt5-qttools-examplesredhat-upgrade-qt5-qttools-examples-debuginforedhat-upgrade-qt5-qttools-libs-designerredhat-upgrade-qt5-qttools-libs-designer-debuginforedhat-upgrade-qt5-qttools-libs-designercomponentsredhat-upgrade-qt5-qttools-libs-designercomponents-debuginforedhat-upgrade-qt5-qttools-libs-helpredhat-upgrade-qt5-qttools-libs-help-debuginforedhat-upgrade-qt5-qttools-staticredhat-upgrade-qt5-qttools-tests-debuginforedhat-upgrade-qt5-qtwebsocketsredhat-upgrade-qt5-qtwebsockets-debuginforedhat-upgrade-qt5-qtwebsockets-debugsourceredhat-upgrade-qt5-qtwebsockets-develredhat-upgrade-qt5-qtwebsockets-devel-debuginforedhat-upgrade-qt5-qtwebsockets-examplesredhat-upgrade-qt5-qtwebsockets-examples-debuginforedhat-upgrade-qt5-qtwebsockets-tests-debuginfo
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.