vulnerability

SUSE: CVE-2020-0570: SUSE Linux Security Advisory

Severity
7
CVSS
(AV:L/AC:M/Au:S/C:C/I:C/A:C)
Published
Feb 10, 2020
Added
Feb 4, 2022
Modified
Jan 28, 2025

Description

Uncontrolled search path in the QT Library before 5.14.0, 5.12.7 and 5.9.10 may allow an authenticated user to potentially enable elevation of privilege via local access.

Solution(s)

suse-upgrade-libqt5-qtbase-common-develsuse-upgrade-libqt5-qtbase-develsuse-upgrade-libqt5-qtbase-platformtheme-gtk3suse-upgrade-libqt5-qtbase-private-headers-develsuse-upgrade-libqt5concurrent-develsuse-upgrade-libqt5concurrent5suse-upgrade-libqt5core-develsuse-upgrade-libqt5core-private-headers-develsuse-upgrade-libqt5core5suse-upgrade-libqt5dbus-develsuse-upgrade-libqt5dbus-private-headers-develsuse-upgrade-libqt5dbus5suse-upgrade-libqt5gui-develsuse-upgrade-libqt5gui-private-headers-develsuse-upgrade-libqt5gui5suse-upgrade-libqt5kmssupport-devel-staticsuse-upgrade-libqt5kmssupport-private-headers-develsuse-upgrade-libqt5network-develsuse-upgrade-libqt5network-private-headers-develsuse-upgrade-libqt5network5suse-upgrade-libqt5opengl-develsuse-upgrade-libqt5opengl-private-headers-develsuse-upgrade-libqt5opengl5suse-upgrade-libqt5openglextensions-devel-staticsuse-upgrade-libqt5platformheaders-develsuse-upgrade-libqt5platformsupport-devel-staticsuse-upgrade-libqt5platformsupport-private-headers-develsuse-upgrade-libqt5printsupport-develsuse-upgrade-libqt5printsupport-private-headers-develsuse-upgrade-libqt5printsupport5suse-upgrade-libqt5sql-develsuse-upgrade-libqt5sql-private-headers-develsuse-upgrade-libqt5sql5suse-upgrade-libqt5sql5-mysqlsuse-upgrade-libqt5sql5-postgresqlsuse-upgrade-libqt5sql5-sqlitesuse-upgrade-libqt5sql5-unixodbcsuse-upgrade-libqt5test-develsuse-upgrade-libqt5test-private-headers-develsuse-upgrade-libqt5test5suse-upgrade-libqt5widgets-develsuse-upgrade-libqt5widgets-private-headers-develsuse-upgrade-libqt5widgets5suse-upgrade-libqt5xml-develsuse-upgrade-libqt5xml5
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.