PT-2025-23897 · Qt Company+1 · Qt+1

Oss Fuzz

·

Published

2025-06-05

·

Updated

2025-10-31

·

CVE-2025-5683

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Qt versions 6.3.0 through 6.5.9 Qt versions 6.6.0 through 6.8.4 Qt version 6.9.0
Description The issue occurs when a specifically crafted ICNS format image file is loaded in QImage, triggering a crash.
Recommendations For Qt versions 6.3.0 through 6.5.9, update to version 6.5.10. For Qt versions 6.6.0 through 6.8.4, update to version 6.8.5. For Qt version 6.9.0, update to version 6.9.1.

Fix

DoS

Allocation of Resources Without Limits

Weakness Enumeration

Related Identifiers

BDU:2026-06687
CVE-2025-5683
MGASA-2025-0208
OESA-2025-1708
OESA-2025-1709
OESA-2025-1794
OESA-2025-2492
OESA-2025-2493
OESA-2025-2494
OESA-2025-2495
OESA-2025-2496
OESA-2025-2581

Affected Products

Debian
Qt