CVE-2020-17507
Summary
| CVE | CVE-2020-17507 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2020-08-12 18:15:00 UTC |
| Updated | 2023-11-07 03:19:00 UTC |
| Description | An issue was discovered in Qt through 5.12.9, and 5.13.x through 5.15.x before 5.15.1. read_xbm_body in gui/image/qxbmhandler.cpp has a buffer over-read. |
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|
| [security-announce] openSUSE-SU-2020:1500-1: moderate: Security update f |
SUSE |
lists.opensuse.org |
|
| [security-announce] openSUSE-SU-2020:1501-1: moderate: Security update f |
SUSE |
lists.opensuse.org |
|
| [SECURITY] [DLA 2377-1] qt4-x11 security update |
MLIST |
lists.debian.org |
|
| [SECURITY] Fedora 31 Update: qt-4.8.7-55.fc31 - package-announce - Fedora Mailing-Lists |
FEDORA |
lists.fedoraproject.org |
|
| codereview.qt-project.org/c/qt/qtbase/+/308495 |
MISC |
codereview.qt-project.org |
Mailing List, Patch, Vendor Advisory |
| [security-announce] openSUSE-SU-2020:1530-1: moderate: Security update f |
SUSE |
lists.opensuse.org |
|
| [security-announce] openSUSE-SU-2020:1564-1: important: Security update |
SUSE |
lists.opensuse.org |
|
| [SECURITY] Fedora 32 Update: qt-4.8.7-55.fc32 - package-announce - Fedora Mailing-Lists |
FEDORA |
lists.fedoraproject.org |
Third Party Advisory |
| [SECURITY] [DLA 2376-1] qtbase-opensource-src security update |
MLIST |
lists.debian.org |
|
| [security-announce] openSUSE-SU-2020:1568-1: important: Security update |
SUSE |
lists.opensuse.org |
|
| [SECURITY] Fedora 31 Update: qt-4.8.7-55.fc31 - package-announce - Fedora Mailing-Lists |
|
lists.fedoraproject.org |
|
| codereview.qt-project.org/c/qt/qtbase/+/308436 |
MISC |
codereview.qt-project.org |
Mailing List, Patch, Vendor Advisory |
| Qt GUI: Buffer overflow (GLSA 202009-04) — Gentoo security |
GENTOO |
security.gentoo.org |
|
| [security-announce] openSUSE-SU-2020:1452-1: moderate: Security update f |
SUSE |
lists.opensuse.org |
|
| [SECURITY] Fedora 32 Update: qt-4.8.7-55.fc32 - package-announce - Fedora Mailing-Lists |
|
lists.fedoraproject.org |
|
| codereview.qt-project.org/c/qt/qtbase/+/308496 |
MISC |
codereview.qt-project.org |
Mailing List, Vendor Advisory |
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 159212 Oracle Enterprise Linux Security Update for qt5-qtbase (ELSA-2021-1756)
- 198505 Ubuntu Security Notification for Qt Vulnerabilities (USN-5081-1)
- 239309 Red Hat Update for qt5-qtbase (RHSA-2021:1756)
- 296072 Oracle Solaris 11.4 Support Repository Update (SRU) 25.75.3 Missing (CPUJUL2020)
- 375583 Tableau Server And Desktop Multiple Vulnerabilities (ADV-2020-059,ADV-2020-060,ADV-2020-061)
- 377463 Alibaba Cloud Linux Security Update for qt and qt5-qtbase (ALINUX2-SA-2020:0184)
- 378220 Virtuozzo Linux Security Update for qt5-qtbase-postgresql (VZLSA-2020:5021)
- 501232 Alpine Linux Security Update for qt5-qtbase
- 501683 Alpine Linux Security Update for qt5-qtbase
- 670938 EulerOS Security Update for qt (EulerOS-SA-2020-2393)
- 750524 OpenSUSE Security Update for libqt5-qtbase (openSUSE-SU-2020:2142-1)
- 750616 OpenSUSE Security Update for libqt5-qtbase (openSUSE-SU-2020:1568-1)
- 750617 OpenSUSE Security Update for libqt5-qtbase (openSUSE-SU-2020:1564-1)
- 751541 SUSE Enterprise Linux Security Update for libqt4 (SUSE-SU-2021:4155-1)
- 900114 CBL-Mariner Linux Security Update for qt5-qtbase 5.12.5
- 901644 Common Base Linux Mariner (CBL-Mariner) Security Update for qt5-qtsvg (6836-1)
- 903438 Common Base Linux Mariner (CBL-Mariner) Security Update for qt5-qtbase (4692)
- 940183 AlmaLinux Security Update for qt5-qtbase (ALSA-2021:1756)