PT-2014-1913 · Qt Company+2 · Qt+3
Publicado
2014-05-08
·
Atualizado
2021-06-16
·
CVE-2014-0190
CVSS v2.0
4.3
Média
| Vetor | AV:N/AC:M/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
Qt versions prior to 5.3
QtGui versions prior to 4.8.5-r2
Description
The issue concerns a denial of service caused by a NULL pointer dereference in the GIF decoder of QtGui in Qt. This can be triggered by remote attackers sending a GIF image with invalid width and height values. The exploitation of this issue may lead to a disruption in the availability of protected information and can be carried out remotely.
Recommendations
For Qt versions prior to 5.3, update to version 5.3 or later to resolve the issue.
For QtGui versions prior to 4.8.5-r2, update to version 4.8.5-r2 or later to resolve the issue.
Correção
DoS
NULL Pointer Dereference
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Alt Linux
Qt
Qtgui
Ubuntu