vulnerability

Red Hat: CVE-2023-37369: qtbase: buffer overflow in QXmlStreamReader (Multiple Advisories)

Severity
8
CVSS
(AV:N/AC:L/Au:N/C:N/I:N/A:C)
Published
2023-08-20
Added
2023-11-08
Modified
2025-01-28

Description

In Qt before 5.15.15, 6.x before 6.2.9, and 6.3.x through 6.5.x before 6.5.2, there can be an application crash in QXmlStreamReader via a crafted XML string that triggers a situation in which a prefix is greater than a length.

Solution(s)

redhat-upgrade-adwaita-qt-debuginforedhat-upgrade-adwaita-qt-debugsourceredhat-upgrade-adwaita-qt5redhat-upgrade-adwaita-qt5-debuginforedhat-upgrade-libadwaita-qt5redhat-upgrade-libadwaita-qt5-debuginforedhat-upgrade-python-pyqt5-sip-debugsourceredhat-upgrade-python-qt5-debuginforedhat-upgrade-python-qt5-debugsourceredhat-upgrade-python-qt5-rpm-macrosredhat-upgrade-python3-pyqt5-sipredhat-upgrade-python3-pyqt5-sip-debuginforedhat-upgrade-python3-qt5redhat-upgrade-python3-qt5-baseredhat-upgrade-python3-qt5-base-debuginforedhat-upgrade-python3-qt5-debuginforedhat-upgrade-python3-qt5-develredhat-upgrade-qgnomeplatformredhat-upgrade-qgnomeplatform-debuginforedhat-upgrade-qgnomeplatform-debugsourceredhat-upgrade-qt5redhat-upgrade-qt5-assistantredhat-upgrade-qt5-assistant-debuginforedhat-upgrade-qt5-designerredhat-upgrade-qt5-designer-debuginforedhat-upgrade-qt5-develredhat-upgrade-qt5-doctoolsredhat-upgrade-qt5-doctools-debuginforedhat-upgrade-qt5-linguistredhat-upgrade-qt5-linguist-debuginforedhat-upgrade-qt5-qdbusviewerredhat-upgrade-qt5-qdbusviewer-debuginforedhat-upgrade-qt5-qt3dredhat-upgrade-qt5-qt3d-debuginforedhat-upgrade-qt5-qt3d-debugsourceredhat-upgrade-qt5-qt3d-develredhat-upgrade-qt5-qt3d-devel-debuginforedhat-upgrade-qt5-qt3d-docredhat-upgrade-qt5-qt3d-examplesredhat-upgrade-qt5-qt3d-examples-debuginforedhat-upgrade-qt5-qt3d-tests-debuginforedhat-upgrade-qt5-qtbaseredhat-upgrade-qt5-qtbase-commonredhat-upgrade-qt5-qtbase-debuginforedhat-upgrade-qt5-qtbase-debugsourceredhat-upgrade-qt5-qtbase-develredhat-upgrade-qt5-qtbase-devel-debuginforedhat-upgrade-qt5-qtbase-docredhat-upgrade-qt5-qtbase-examplesredhat-upgrade-qt5-qtbase-examples-debuginforedhat-upgrade-qt5-qtbase-guiredhat-upgrade-qt5-qtbase-gui-debuginforedhat-upgrade-qt5-qtbase-mysqlredhat-upgrade-qt5-qtbase-mysql-debuginforedhat-upgrade-qt5-qtbase-odbcredhat-upgrade-qt5-qtbase-odbc-debuginforedhat-upgrade-qt5-qtbase-postgresqlredhat-upgrade-qt5-qtbase-postgresql-debuginforedhat-upgrade-qt5-qtbase-private-develredhat-upgrade-qt5-qtbase-staticredhat-upgrade-qt5-qtbase-tests-debuginforedhat-upgrade-qt5-qtconnectivityredhat-upgrade-qt5-qtconnectivity-debuginforedhat-upgrade-qt5-qtconnectivity-debugsourceredhat-upgrade-qt5-qtconnectivity-develredhat-upgrade-qt5-qtconnectivity-docredhat-upgrade-qt5-qtconnectivity-examplesredhat-upgrade-qt5-qtconnectivity-examples-debuginforedhat-upgrade-qt5-qtconnectivity-tests-debuginforedhat-upgrade-qt5-qtdeclarativeredhat-upgrade-qt5-qtdeclarative-debuginforedhat-upgrade-qt5-qtdeclarative-debugsourceredhat-upgrade-qt5-qtdeclarative-develredhat-upgrade-qt5-qtdeclarative-devel-debuginforedhat-upgrade-qt5-qtdeclarative-docredhat-upgrade-qt5-qtdeclarative-examplesredhat-upgrade-qt5-qtdeclarative-examples-debuginforedhat-upgrade-qt5-qtdeclarative-staticredhat-upgrade-qt5-qtdeclarative-tests-debuginforedhat-upgrade-qt5-qtdocredhat-upgrade-qt5-qtgraphicaleffectsredhat-upgrade-qt5-qtgraphicaleffects-debuginforedhat-upgrade-qt5-qtgraphicaleffects-debugsourceredhat-upgrade-qt5-qtgraphicaleffects-docredhat-upgrade-qt5-qtgraphicaleffects-tests-debuginforedhat-upgrade-qt5-qtimageformatsredhat-upgrade-qt5-qtimageformats-debuginforedhat-upgrade-qt5-qtimageformats-debugsourceredhat-upgrade-qt5-qtimageformats-docredhat-upgrade-qt5-qtimageformats-tests-debuginforedhat-upgrade-qt5-qtlocationredhat-upgrade-qt5-qtlocation-debuginforedhat-upgrade-qt5-qtlocation-debugsourceredhat-upgrade-qt5-qtlocation-develredhat-upgrade-qt5-qtlocation-docredhat-upgrade-qt5-qtlocation-examplesredhat-upgrade-qt5-qtlocation-examples-debuginforedhat-upgrade-qt5-qtlocation-tests-debuginforedhat-upgrade-qt5-qtmultimediaredhat-upgrade-qt5-qtmultimedia-debuginforedhat-upgrade-qt5-qtmultimedia-debugsourceredhat-upgrade-qt5-qtmultimedia-develredhat-upgrade-qt5-qtmultimedia-docredhat-upgrade-qt5-qtmultimedia-examplesredhat-upgrade-qt5-qtmultimedia-examples-debuginforedhat-upgrade-qt5-qtmultimedia-tests-debuginforedhat-upgrade-qt5-qtquickcontrolsredhat-upgrade-qt5-qtquickcontrols-debuginforedhat-upgrade-qt5-qtquickcontrols-debugsourceredhat-upgrade-qt5-qtquickcontrols-docredhat-upgrade-qt5-qtquickcontrols-examplesredhat-upgrade-qt5-qtquickcontrols-examples-debuginforedhat-upgrade-qt5-qtquickcontrols-tests-debuginforedhat-upgrade-qt5-qtquickcontrols2redhat-upgrade-qt5-qtquickcontrols2-debuginforedhat-upgrade-qt5-qtquickcontrols2-debugsourceredhat-upgrade-qt5-qtquickcontrols2-develredhat-upgrade-qt5-qtquickcontrols2-docredhat-upgrade-qt5-qtquickcontrols2-examplesredhat-upgrade-qt5-qtquickcontrols2-examples-debuginforedhat-upgrade-qt5-qtquickcontrols2-tests-debuginforedhat-upgrade-qt5-qtscriptredhat-upgrade-qt5-qtscript-debuginforedhat-upgrade-qt5-qtscript-debugsourceredhat-upgrade-qt5-qtscript-develredhat-upgrade-qt5-qtscript-docredhat-upgrade-qt5-qtscript-examplesredhat-upgrade-qt5-qtscript-examples-debuginforedhat-upgrade-qt5-qtscript-tests-debuginforedhat-upgrade-qt5-qtsensorsredhat-upgrade-qt5-qtsensors-debuginforedhat-upgrade-qt5-qtsensors-debugsourceredhat-upgrade-qt5-qtsensors-develredhat-upgrade-qt5-qtsensors-docredhat-upgrade-qt5-qtsensors-examplesredhat-upgrade-qt5-qtsensors-examples-debuginforedhat-upgrade-qt5-qtsensors-tests-debuginforedhat-upgrade-qt5-qtserialbusredhat-upgrade-qt5-qtserialbus-debuginforedhat-upgrade-qt5-qtserialbus-debugsourceredhat-upgrade-qt5-qtserialbus-develredhat-upgrade-qt5-qtserialbus-docredhat-upgrade-qt5-qtserialbus-examplesredhat-upgrade-qt5-qtserialbus-examples-debuginforedhat-upgrade-qt5-qtserialbus-tests-debuginforedhat-upgrade-qt5-qtserialportredhat-upgrade-qt5-qtserialport-debuginforedhat-upgrade-qt5-qtserialport-debugsourceredhat-upgrade-qt5-qtserialport-develredhat-upgrade-qt5-qtserialport-docredhat-upgrade-qt5-qtserialport-examplesredhat-upgrade-qt5-qtserialport-examples-debuginforedhat-upgrade-qt5-qtserialport-tests-debuginforedhat-upgrade-qt5-qtsvgredhat-upgrade-qt5-qtsvg-debuginforedhat-upgrade-qt5-qtsvg-debugsourceredhat-upgrade-qt5-qtsvg-develredhat-upgrade-qt5-qtsvg-docredhat-upgrade-qt5-qtsvg-examplesredhat-upgrade-qt5-qtsvg-examples-debuginforedhat-upgrade-qt5-qtsvg-tests-debuginforedhat-upgrade-qt5-qttoolsredhat-upgrade-qt5-qttools-commonredhat-upgrade-qt5-qttools-debuginforedhat-upgrade-qt5-qttools-debugsourceredhat-upgrade-qt5-qttools-develredhat-upgrade-qt5-qttools-devel-debuginforedhat-upgrade-qt5-qttools-docredhat-upgrade-qt5-qttools-examplesredhat-upgrade-qt5-qttools-examples-debuginforedhat-upgrade-qt5-qttools-libs-designerredhat-upgrade-qt5-qttools-libs-designer-debuginforedhat-upgrade-qt5-qttools-libs-designercomponentsredhat-upgrade-qt5-qttools-libs-designercomponents-debuginforedhat-upgrade-qt5-qttools-libs-helpredhat-upgrade-qt5-qttools-libs-help-debuginforedhat-upgrade-qt5-qttools-staticredhat-upgrade-qt5-qttools-tests-debuginforedhat-upgrade-qt5-qttranslationsredhat-upgrade-qt5-qtwaylandredhat-upgrade-qt5-qtwayland-debuginforedhat-upgrade-qt5-qtwayland-debugsourceredhat-upgrade-qt5-qtwayland-develredhat-upgrade-qt5-qtwayland-devel-debuginforedhat-upgrade-qt5-qtwayland-docredhat-upgrade-qt5-qtwayland-examplesredhat-upgrade-qt5-qtwayland-examples-debuginforedhat-upgrade-qt5-qtwayland-tests-debuginforedhat-upgrade-qt5-qtwebchannelredhat-upgrade-qt5-qtwebchannel-debuginforedhat-upgrade-qt5-qtwebchannel-debugsourceredhat-upgrade-qt5-qtwebchannel-develredhat-upgrade-qt5-qtwebchannel-docredhat-upgrade-qt5-qtwebchannel-examplesredhat-upgrade-qt5-qtwebchannel-examples-debuginforedhat-upgrade-qt5-qtwebchannel-tests-debuginforedhat-upgrade-qt5-qtwebsocketsredhat-upgrade-qt5-qtwebsockets-debuginforedhat-upgrade-qt5-qtwebsockets-debugsourceredhat-upgrade-qt5-qtwebsockets-develredhat-upgrade-qt5-qtwebsockets-docredhat-upgrade-qt5-qtwebsockets-examplesredhat-upgrade-qt5-qtwebsockets-examples-debuginforedhat-upgrade-qt5-qtwebsockets-tests-debuginforedhat-upgrade-qt5-qtx11extrasredhat-upgrade-qt5-qtx11extras-debuginforedhat-upgrade-qt5-qtx11extras-debugsourceredhat-upgrade-qt5-qtx11extras-develredhat-upgrade-qt5-qtx11extras-docredhat-upgrade-qt5-qtx11extras-tests-debuginforedhat-upgrade-qt5-qtxmlpatternsredhat-upgrade-qt5-qtxmlpatterns-debuginforedhat-upgrade-qt5-qtxmlpatterns-debugsourceredhat-upgrade-qt5-qtxmlpatterns-develredhat-upgrade-qt5-qtxmlpatterns-devel-debuginforedhat-upgrade-qt5-qtxmlpatterns-docredhat-upgrade-qt5-qtxmlpatterns-examplesredhat-upgrade-qt5-qtxmlpatterns-examples-debuginforedhat-upgrade-qt5-qtxmlpatterns-tests-debuginforedhat-upgrade-qt5-rpm-macrosredhat-upgrade-qt5-srpm-macros
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.