<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
  <title>CVE Daily – Qt (High+Critical)</title>
  <link>https://cvedaily.com/pages/tags/qt.html</link>
  <atom:link href="https://cvedaily.com/feed-tags/qt-severe.xml" rel="self" type="application/rss+xml"/>
  <description>CVE Daily – Qt (High+Critical)</description>
  <language>en</language>
  <lastBuildDate>Wed, 03 Jun 2026 21:26:43 +0000</lastBuildDate>
  <item>
    <title>[Critical] CVE-2026-48700 – An issue was discovered in all versions of PCManFM-Qt starting from 1.1.0. When ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-48700</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-48700</guid>
    <pubDate>Fri, 22 May 2026 19:17:04 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-48700</strong></p>
  <p>An issue was discovered in all versions of PCManFM-Qt starting from 1.1.0. When a regular file's path is passed as a URI in an org.freedesktop.FileManager1.ShowFolders D-Bus method call, PCManFM-Qt delegates to a different program (based on the file type) without user confirmation. This could be used to achieve code execution or circumvent network namespace restrictions. NOTE: those outcomes are…</p>
  <p><strong>CVSS:</strong> 9.3 · <strong>CWE:</strong> CWE-913</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-48700">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-6210 – A type confusion vulnerability in Qt SVG allows an attacker to cause an applicat...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-6210</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-6210</guid>
    <pubDate>Wed, 06 May 2026 12:16:49 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-6210</strong></p>
  <p>A type confusion vulnerability in Qt SVG allows an attacker to cause an application crash via a crafted SVG image.    When processing SVG marker references, the renderer retrieves a node by its id attribute and casts it to QSvgMarker* without verifying the node type. A non-marker element (such as a <line> element) that references itself as a marker triggers an out-of-bounds heap read due to the o…</p>
  <p><strong>CVSS:</strong> 8.7 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-6210">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-14576 – Insufficient validation of node IDs in Qt SVG module allows arbitrary QML/JavaSc...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-14576</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-14576</guid>
    <pubDate>Thu, 30 Apr 2026 13:16:02 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-14576</strong></p>
  <p>Insufficient validation of node IDs in Qt SVG module allows arbitrary QML/JavaScript code injection when loading malicious SVG files through the VectorImage component in Qt Quick. While QML execution is typically more restricted than native code execution, this could still lead to denial of service, information disclosure, or other impacts depending on the application's privilege level and data a…</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-14576">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-69003 – Improper Neutralization of Input During Web Page Generation ('Cross-site Scripti...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-69003</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-69003</guid>
    <pubDate>Thu, 22 Jan 2026 17:16:16 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-69003</strong></p>
  <p>Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in QantumThemes KenthaRadio qt-kentharadio allows Reflected XSS.This issue affects KenthaRadio: from n/a through <= 2.2.0.</p>
  <p><strong>CVSS:</strong> 7.1 · <strong>CWE:</strong> CWE-79</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-69003">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-12385 – Allocation of Resources Without Limits or Throttling, Improper Validation of Spe...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-12385</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-12385</guid>
    <pubDate>Wed, 03 Dec 2025 20:16:24 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-12385</strong></p>
  <p>Allocation of Resources Without Limits or Throttling, Improper Validation of Specified Quantity in Input vulnerability in The Qt Company Qt on Windows, MacOS, Linux, iOS, Android, x86, ARM, 64 bit, 32 bit allows Excessive Allocation. This issue affects users of the Text component in Qt Quick. Missing validation of the width and height in the <img> tag could cause an application to become unrespon…</p>
  <p><strong>CVSS:</strong> 8.7 · <strong>CWE:</strong> CWE-770</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-12385">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2025-6338 – There is an incomplete cleanup vulnerability in Qt Network's Schannel support on...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-6338</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-6338</guid>
    <pubDate>Thu, 16 Oct 2025 10:15:44 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2025-6338</strong></p>
  <p>There is an incomplete cleanup vulnerability in Qt Network's Schannel support on Windows which can lead to a Denial of Service over a long period.This issue affects Qt from 5.15.0 through 6.8.3, from 6.9.0 before 6.9.2.</p>
  <p><strong>CVSS:</strong> 9.2 · <strong>CWE:</strong> CWE-459</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-6338">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-5455 – An issue was found in the private API function qDecodeDataUrl() in QtCore, which...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-5455</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-5455</guid>
    <pubDate>Mon, 02 Jun 2025 09:15:21 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-5455</strong></p>
  <p>An issue was found in the private API function qDecodeDataUrl() in QtCore, which is used in QTextDocument and QNetworkReply, and, potentially, in user code.  If the function was called with malformed data, for example, an URL that contained a "charset" parameter that lacked a value (such as "data:charset,"), and Qt was built with assertions enabled, then it would hit an assertion, resulting in a…</p>
  <p><strong>CVSS:</strong> 8.4 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-5455">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-4211 – Improper Link Resolution Before File Access ('Link Following') vulnerability in ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-4211</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-4211</guid>
    <pubDate>Fri, 16 May 2025 14:15:32 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-4211</strong></p>
  <p>Improper Link Resolution Before File Access ('Link Following') vulnerability in QFileSystemEngine in the Qt corelib module on Windows which potentially allows Symlink Attacks and the use of Malicious Files. Issue originates from CVE-2024-38081. The vulnerability arises from the use of the GetTempPath API, which can be exploited by attackers to manipulate temporary file paths, potentially leading…</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-59</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-4211">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2024-47597 – GStreamer is a library for constructing graphs of media-handling components. An ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-47597</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-47597</guid>
    <pubDate>Thu, 12 Dec 2024 02:03:31 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2024-47597</strong></p>
  <p>GStreamer is a library for constructing graphs of media-handling components. An OOB-read has been detected in the function qtdemux_parse_samples within qtdemux.c. This issue arises when the function qtdemux_parse_samples reads data beyond the boundaries of the stream->stco buffer. The following code snippet shows the call to qt_atom_parser_get_offset_unchecked, which leads to the OOB-read when pa…</p>
  <p><strong>CVSS:</strong> 9.1 · <strong>CWE:</strong> CWE-125</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-47597">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-30376 – Famatech Advanced IP Scanner Uncontrolled Search Path Element Local Privilege Es...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-30376</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-30376</guid>
    <pubDate>Fri, 22 Nov 2024 20:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-30376</strong></p>
  <p>Famatech Advanced IP Scanner Uncontrolled Search Path Element Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Famatech Advanced IP Scanner. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.  The specific flaw exists within the…</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-427</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-30376">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2024-48779 – An issue in Wanxing Technology's Yitu project Management Software 3.2.2 allows a...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-48779</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-48779</guid>
    <pubDate>Tue, 15 Oct 2024 21:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2024-48779</strong></p>
  <p>An issue in Wanxing Technology's Yitu project Management Software 3.2.2 allows a remote attacker to execute arbitrary code via the platformpluginpath parameter to specify that the qt plugin loads the directory.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-48779">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-36432 – An arbitrary memory write vulnerability was discovered in Supermicro X11DPG-HGX2...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-36432</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-36432</guid>
    <pubDate>Mon, 15 Jul 2024 19:15:02 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-36432</strong></p>
  <p>An arbitrary memory write vulnerability was discovered in Supermicro X11DPG-HGX2, X11PDG-QT, X11PDG-OT, and X11PDG-SN motherboards with BIOS firmware before 4.4.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-1246</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-36432">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-39936 – An issue was discovered in HTTP2 in Qt before 5.15.18, 6.x before 6.2.13, 6.3.x ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-39936</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-39936</guid>
    <pubDate>Thu, 04 Jul 2024 21:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-39936</strong></p>
  <p>An issue was discovered in HTTP2 in Qt before 5.15.18, 6.x before 6.2.13, 6.3.x through 6.5.x before 6.5.7, and 6.6.x through 6.7.x before 6.7.3. Code to make security-relevant decisions about an established connection may execute too early, because the encrypted() signal has not yet been emitted and processed..</p>
  <p><strong>CVSS:</strong> 8.6 · <strong>CWE:</strong> CWE-367</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-39936">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2024-36048 – QAbstractOAuth in Qt Network Authorization in Qt before 5.15.17, 6.x before 6.2...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-36048</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-36048</guid>
    <pubDate>Sat, 18 May 2024 21:15:47 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2024-36048</strong></p>
  <p>QAbstractOAuth in Qt Network Authorization in Qt before 5.15.17, 6.x before 6.2.13, 6.3.x through 6.5.x before 6.5.6, and 6.6.x through 6.7.x before 6.7.1 uses only the time to seed the PRNG, which may result in guessable values.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-335</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-36048">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2023-51714 – An issue was discovered in the HTTP2 implementation in Qt before 5.15.17, 6.x be...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-51714</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-51714</guid>
    <pubDate>Sun, 24 Dec 2023 21:15:25 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2023-51714</strong></p>
  <p>An issue was discovered in the HTTP2 implementation in Qt before 5.15.17, 6.x before 6.2.11, 6.3.x through 6.5.x before 6.5.4, and 6.6.x before 6.6.2. network/access/http2/hpacktable.cpp has an incorrect HPack integer overflow check.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-190</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-51714">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-42801 – Moonlight-common-c contains the core GameStream client code shared between Moonl...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-42801</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-42801</guid>
    <pubDate>Thu, 14 Dec 2023 17:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-42801</strong></p>
  <p>Moonlight-common-c contains the core GameStream client code shared between Moonlight clients. Moonlight-common-c is vulnerable to buffer overflow starting in commit f57bd745b4cbed577ea654fad4701bea4d38b44c. A malicious game streaming server could exploit a buffer overflow vulnerability to crash a moonlight client. Achieving RCE is possible but unlikely, due to stack canaries in use by modern comp…</p>
  <p><strong>CVSS:</strong> 7.6 · <strong>CWE:</strong> CWE-120</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-42801">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-37369 – In Qt before 5.15.15, 6.x before 6.2.9, and 6.3.x through 6.5.x before 6.5.2, th...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-37369</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-37369</guid>
    <pubDate>Sun, 20 Aug 2023 07:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-37369</strong></p>
  <p>In Qt before 5.15.15, 6.x before 6.2.9, and 6.3.x through 6.5.x before 6.5.2, there can be an application crash in QXmlStreamReader via a crafted XML string that triggers a situation in which a prefix is greater than a length.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-37369">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-38197 – An issue was discovered in Qt before 5.15.15, 6.x before 6.2.10, and 6.3.x throu...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-38197</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-38197</guid>
    <pubDate>Thu, 13 Jul 2023 02:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-38197</strong></p>
  <p>An issue was discovered in Qt before 5.15.15, 6.x before 6.2.10, and 6.3.x through 6.5.x before 6.5.3. There are infinite loops in recursive entity expansion.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-835</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-38197">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-32763 – An issue was discovered in Qt before 5.15.15, 6.x before 6.2.9, and 6.3.x throug...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-32763</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-32763</guid>
    <pubDate>Sun, 28 May 2023 23:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-32763</strong></p>
  <p>An issue was discovered in Qt before 5.15.15, 6.x before 6.2.9, and 6.3.x through 6.5.x before 6.5.1. When a SVG file with an image inside it is rendered, a QTextLayout buffer overflow can be triggered.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-120</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-32763">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-24607 – Qt before 6.4.3 allows a denial of service via a crafted string when the SQL ODB...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-24607</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-24607</guid>
    <pubDate>Sat, 15 Apr 2023 01:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-24607</strong></p>
  <p>Qt before 6.4.3 allows a denial of service via a crafted string when the SQL ODBC driver plugin is used and the size of SQLTCHAR is 4. The affected versions are 5.x before 5.15.13, 6.x before 6.2.8, and 6.3.x before 6.4.3.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-24607">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-43591 – A buffer overflow vulnerability exists in the QML QtScript Reflect API of Qt Pro...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-43591</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-43591</guid>
    <pubDate>Thu, 12 Jan 2023 17:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-43591</strong></p>
  <p>A buffer overflow vulnerability exists in the QML QtScript Reflect API of Qt Project Qt 6.3.2. A specially-crafted javascript code can trigger an out-of-bounds memory access, which can lead to arbitrary code execution. Target application would need to access a malicious web page to trigger this vulnerability.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-43591">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-40983 – An integer overflow vulnerability exists in the QML QtScript Reflect API of Qt P...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-40983</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-40983</guid>
    <pubDate>Thu, 12 Jan 2023 17:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-40983</strong></p>
  <p>An integer overflow vulnerability exists in the QML QtScript Reflect API of Qt Project Qt 6.3.2. A specially-crafted javascript code can trigger an integer overflow during memory allocation, which can lead to arbitrary code execution. Target application would need to access a malicious web page to trigger this vulnerability.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-190</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-40983">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-31694 – InstallBuilder Qt installers built with versions previous to 22.10 try to load D...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-31694</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-31694</guid>
    <pubDate>Fri, 18 Nov 2022 23:15:19 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-31694</strong></p>
  <p>InstallBuilder Qt installers built with versions previous to 22.10 try to load DLLs from the installer binary parent directory when displaying popups. This may allow an attacker to plant a malicious DLL in the installer parent directory to allow executing code with the privileges of the installer (when the popup triggers the loading of the library). Exploiting these type of vulnerabilities genera…</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-427</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-31694">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-3481 – A flaw was found in Qt. An out-of-bounds read vulnerability was found in QRadial...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-3481</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-3481</guid>
    <pubDate>Mon, 22 Aug 2022 15:15:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-3481</strong></p>
  <p>A flaw was found in Qt. An out-of-bounds read vulnerability was found in QRadialFetchSimd in qt/qtbase/src/gui/painting/qdrawhelper_p.h in Qt/Qtbase. While rendering and displaying a crafted Scalable Vector Graphics (SVG) file this flaw may lead to an unauthorized memory access. The highest threat from this vulnerability is to data confidentiality and the application availability.</p>
  <p><strong>CVSS:</strong> 7.1 · <strong>CWE:</strong> CWE-125</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-3481">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-34902 – This vulnerability allows local attackers to escalate privileges on affected ins...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-34902</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-34902</guid>
    <pubDate>Mon, 18 Jul 2022 15:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-34902</strong></p>
  <p>This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Access 6.5.4 (39316) Agent. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The specific flaw exists within the Desktop Control Agent service. The service loads Qt plugins from an unsecured location. An attack…</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-427</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-34902">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-25634 – Qt through 5.15.8 and 6.x through 6.2.3 can load system library files from an un...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-25634</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-25634</guid>
    <pubDate>Wed, 02 Mar 2022 15:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-25634</strong></p>
  <p>Qt through 5.15.8 and 6.x through 6.2.3 can load system library files from an unintended working directory.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-22</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-25634">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-25255 – In Qt 5.9.x through 5.15.x before 5.15.9 and 6.x before 6.2.4 on Linux and UNIX,...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-25255</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-25255</guid>
    <pubDate>Wed, 16 Feb 2022 19:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-25255</strong></p>
  <p>In Qt 5.9.x through 5.15.x before 5.15.9 and 6.x before 6.2.4 on Linux and UNIX, QProcess could execute a binary from the current working directory when not found in the PATH.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-25255">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-21690 – OnionShare is an open source tool that lets you securely and anonymously share f...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-21690</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-21690</guid>
    <pubDate>Tue, 18 Jan 2022 23:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-21690</strong></p>
  <p>OnionShare is an open source tool that lets you securely and anonymously share files, host websites, and chat with friends using the Tor network. In affected versions The path parameter of the requested URL is not sanitized before being passed to the QT frontend. This path is used in all components for displaying the server access history. This leads to a rendered HTML4 Subset (QT RichText editor…</p>
  <p><strong>CVSS:</strong> 8.7 · <strong>CWE:</strong> CWE-79</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-21690">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-21688 – OnionShare is an open source tool that lets you securely and anonymously share f...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-21688</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-21688</guid>
    <pubDate>Tue, 18 Jan 2022 22:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-21688</strong></p>
  <p>OnionShare is an open source tool that lets you securely and anonymously share files, host websites, and chat with friends using the Tor network. Affected versions of the desktop application were found to be vulnerable to denial of service via an undisclosed vulnerability in the QT image parsing. Roughly 20 bytes lead to 2GB memory consumption and this can be triggered multiple times. To be abuse…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-125</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-21688">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-38593 – Qt 5.x before 5.15.6 and 6.x through 6.1.2 has an out-of-bounds write in QOutlin...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-38593</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-38593</guid>
    <pubDate>Thu, 12 Aug 2021 02:15:06 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-38593</strong></p>
  <p>Qt 5.x before 5.15.6 and 6.x through 6.1.2 has an out-of-bounds write in QOutlineMapper::convertPath (called from QRasterPaintEngine::fill and QPaintEngineEx::stroke).</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-787</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-38593">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-24742 – An issue has been fixed in Qt versions 5.14.0 where QPluginLoader attempts to lo...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-24742</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-24742</guid>
    <pubDate>Mon, 09 Aug 2021 22:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-24742</strong></p>
  <p>An issue has been fixed in Qt versions 5.14.0 where QPluginLoader attempts to load plugins relative to the working directory, allowing attackers to execute arbitrary code via crafted files.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-24742">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2021-24472 – The OnAir2 WordPress theme before 3.9.9.2 and QT KenthaRadio WordPress plugin be...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-24472</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-24472</guid>
    <pubDate>Mon, 02 Aug 2021 11:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2021-24472</strong></p>
  <p>The OnAir2 WordPress theme before 3.9.9.2 and QT KenthaRadio WordPress plugin before 2.0.2 have exposed proxy functionality to unauthenticated users, sending requests to this proxy functionality will have the web server fetch and display the content from any URI, this would allow for SSRF (Server Side Request Forgery) and RFI (Remote File Inclusion) vulnerabilities on the website.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-918</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-24472">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2021-3401 – Bitcoin Core before 0.19.0 might allow remote attackers to execute arbitrary cod...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-3401</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-3401</guid>
    <pubDate>Thu, 04 Feb 2021 05:15:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2021-3401</strong></p>
  <p>Bitcoin Core before 0.19.0 might allow remote attackers to execute arbitrary code when another application unsafely passes the -platformpluginpath argument to the bitcoin-qt program, as demonstrated by an x-scheme-handler/bitcoin handler for a .desktop file or a web browser. NOTE: the discoverer states "I believe that this vulnerability cannot actually be exploited."</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-88</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-3401">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-3979 – InstallBuilder for Qt Windows (versions prior to 20.7.0) installers look for plu...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-3979</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-3979</guid>
    <pubDate>Fri, 18 Sep 2020 18:15:17 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-3979</strong></p>
  <p>InstallBuilder for Qt Windows (versions prior to 20.7.0) installers look for plugins at a predictable location at initialization time, writable by non-admin users. While those plugins are not required, they are loaded if present, which could allow an attacker to plant a malicious library which could result in code execution with the security scope of the installer.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-427</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-3979">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-0570 – Uncontrolled search path in the QT Library before 5.14.0, 5.12.7 and 5.9.10 may ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-0570</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-0570</guid>
    <pubDate>Mon, 14 Sep 2020 19:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-0570</strong></p>
  <p>Uncontrolled search path in the QT Library before 5.14.0, 5.12.7 and 5.9.10 may allow an authenticated user to potentially enable elevation of privilege via local access.</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-426</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-0570">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-25291 – GdiDrawHoriLineIAlt in Kingsoft WPS Office before 11.2.0.9403 allows remote heap...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-25291</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-25291</guid>
    <pubDate>Sun, 13 Sep 2020 20:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-25291</strong></p>
  <p>GdiDrawHoriLineIAlt in Kingsoft WPS Office before 11.2.0.9403 allows remote heap corruption via a crafted PLTE chunk in PNG data within a Word document. This is related to QBrush::setMatrix in gui/painting/qbrush.cpp in Qt 4.x.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-787</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-25291">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-24972 – The Kleopatra component before 3.1.12 (and before 20.07.80) for GnuPG allows rem...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-24972</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-24972</guid>
    <pubDate>Sat, 29 Aug 2020 21:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-24972</strong></p>
  <p>The Kleopatra component before 3.1.12 (and before 20.07.80) for GnuPG allows remote attackers to execute arbitrary code because openpgp4fpr: URLs are supported without safe handling of command-line options. The Qt platformpluginpath command-line option can be used to load an arbitrary DLL.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-116</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-24972">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-13962 – Qt 5.12.2 through 5.14.2, as used in unofficial builds of Mumble 1.3.0 and other...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-13962</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-13962</guid>
    <pubDate>Tue, 09 Jun 2020 00:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-13962</strong></p>
  <p>Qt 5.12.2 through 5.14.2, as used in unofficial builds of Mumble 1.3.0 and other products, mishandles OpenSSL's error queue, which can cause a denial of service to QSslSocket users. Because errors leak in unrelated TLS sessions, an unrelated session may be disconnected when any handshake fails. (Mumble 1.3.1 is not affected, regardless of the Qt version.)</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-13962">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2020-12267 – setMarkdown in Qt before 5.14.2 has a use-after-free related to QTextMarkdownImp...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-12267</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-12267</guid>
    <pubDate>Mon, 27 Apr 2020 02:15:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2020-12267</strong></p>
  <p>setMarkdown in Qt before 5.14.2 has a use-after-free related to QTextMarkdownImporter::insertBlock.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-416</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-12267">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2016-11052 – An issue was discovered on Samsung mobile devices with L(5.0/5.1) software. je_f...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2016-11052</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2016-11052</guid>
    <pubDate>Tue, 07 Apr 2020 13:15:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2016-11052</strong></p>
  <p>An issue was discovered on Samsung mobile devices with L(5.0/5.1) software. je_free in libQjpeg.so in Qjpeg in Qt 5.5 allows memory corruption via a malformed JPEG file. The Samsung ID is SVE-2015-5110 (January 2016).</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2016-11052">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2015-3641 – bitcoind and Bitcoin-Qt prior to 0.10.2 allow attackers to cause a denial of ser...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2015-3641</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2015-3641</guid>
    <pubDate>Thu, 12 Mar 2020 21:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2015-3641</strong></p>
  <p>bitcoind and Bitcoin-Qt prior to 0.10.2 allow attackers to cause a denial of service (disabled functionality such as a client application crash) via an "Easy" attack.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2015-3641">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2018-21035 – In Qt through 5.14.1, the WebSocket implementation accepts up to 2GB for frames ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2018-21035</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2018-21035</guid>
    <pubDate>Fri, 28 Feb 2020 21:15:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2018-21035</strong></p>
  <p>In Qt through 5.14.1, the WebSocket implementation accepts up to 2GB for frames and 2GB for messages. Smaller limits cannot be configured. This makes it easier for attackers to cause a denial of service (memory consumption).</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-770</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2018-21035">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2015-9541 – Qt through 5.14 allows an exponential XML entity expansion attack via a crafted ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2015-9541</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2015-9541</guid>
    <pubDate>Fri, 24 Jan 2020 22:15:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2015-9541</strong></p>
  <p>Qt through 5.14 allows an exponential XML entity expansion attack via a crafted SVG document that is mishandled in QXmlStreamReader, a related issue to CVE-2003-1564.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-776</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2015-9541">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2019-15947 – In Bitcoin Core 0.18.0, bitcoin-qt stores wallet.dat data unencrypted in memory...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-15947</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-15947</guid>
    <pubDate>Thu, 05 Sep 2019 17:15:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2019-15947</strong></p>
  <p>In Bitcoin Core 0.18.0, bitcoin-qt stores wallet.dat data unencrypted in memory. Upon a crash, it may dump a core file. If a user were to mishandle a core file, an attacker can reconstruct the user's wallet.dat file, including their private keys, via a grep "6231 0500" command.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-312</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-15947">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2019-12828 – An issue was discovered in Electronic Arts Origin before 10.5.39. Due to imprope...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-12828</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-12828</guid>
    <pubDate>Fri, 14 Jun 2019 20:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2019-12828</strong></p>
  <p>An issue was discovered in Electronic Arts Origin before 10.5.39. Due to improper sanitization of the origin:// and origin2:// URI schemes, it is possible to inject additional arguments into the Origin process and ultimately leverage code execution by loading a backdoored Qt plugin remotely via the platformpluginpath argument supplied with a Windows network share.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-19</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-12828">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2019-11351 – TeamSpeak 3 Client before 3.2.5 allows remote code execution in the Qt framework...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-11351</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-11351</guid>
    <pubDate>Fri, 19 Apr 2019 21:29:02 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2019-11351</strong></p>
  <p>TeamSpeak 3 Client before 3.2.5 allows remote code execution in the Qt framework.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-426</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-11351">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2018-19873 – An issue was discovered in Qt before 5.11.3. QBmpHandler has a buffer overflow v...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2018-19873</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2018-19873</guid>
    <pubDate>Wed, 26 Dec 2018 21:29:02 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2018-19873</strong></p>
  <p>An issue was discovered in Qt before 5.11.3. QBmpHandler has a buffer overflow via BMP data.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-119</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2018-19873">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2018-19870 – An issue was discovered in Qt before 5.11.3. A malformed GIF image causes a NULL...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2018-19870</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2018-19870</guid>
    <pubDate>Wed, 26 Dec 2018 21:29:02 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2018-19870</strong></p>
  <p>An issue was discovered in Qt before 5.11.3. A malformed GIF image causes a NULL pointer dereference in QGifHandler resulting in a segmentation fault.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-476</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2018-19870">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2018-15518 – QXmlStream in Qt 5.x before 5.11.3 has a double-free or corruption during parsin...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2018-15518</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2018-15518</guid>
    <pubDate>Wed, 26 Dec 2018 21:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2018-15518</strong></p>
  <p>QXmlStream in Qt 5.x before 5.11.3 has a double-free or corruption during parsing of a specially crafted illegal XML document.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-415</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2018-15518">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2018-19865 – A keystroke logging issue was discovered in Virtual Keyboard in Qt 5.7.x, 5.8.x,...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2018-19865</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2018-19865</guid>
    <pubDate>Wed, 05 Dec 2018 11:29:06 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2018-19865</strong></p>
  <p>A keystroke logging issue was discovered in Virtual Keyboard in Qt 5.7.x, 5.8.x, 5.9.x, 5.10.x, and 5.11.x before 5.11.3.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-532</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2018-19865">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2018-17144 – Bitcoin Core 0.14.x before 0.14.3, 0.15.x before 0.15.2, and 0.16.x before 0.16...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2018-17144</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2018-17144</guid>
    <pubDate>Wed, 19 Sep 2018 08:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2018-17144</strong></p>
  <p>Bitcoin Core 0.14.x before 0.14.3, 0.15.x before 0.15.2, and 0.16.x before 0.16.3 and Bitcoin Knots 0.14.x through 0.16.x before 0.16.3 allow a remote denial of service (application crash) exploitable by miners via duplicate input. An attacker can make bitcoind or Bitcoin-Qt crash.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2018-17144">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2012-5360 – Libavcodec in FFmpeg before 0.11 allows remote attackers to execute arbitrary co...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2012-5360</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2012-5360</guid>
    <pubDate>Thu, 08 Feb 2018 23:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2012-5360</strong></p>
  <p>Libavcodec in FFmpeg before 0.11 allows remote attackers to execute arbitrary code via a crafted QT file.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2012-5360">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2015-1290 – The Google V8 engine, as used in Google Chrome before 44.0.2403.89 and QtWebEngi...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2015-1290</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2015-1290</guid>
    <pubDate>Tue, 09 Jan 2018 16:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2015-1290</strong></p>
  <p>The Google V8 engine, as used in Google Chrome before 44.0.2403.89 and QtWebEngineCore in Qt before 5.5.1, allows remote attackers to cause a denial of service (memory corruption) or execute arbitrary code via a crafted web site.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-119</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2015-1290">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2017-10904 – Qt for Android prior to 5.9.0 allows remote attackers to execute arbitrary OS co...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2017-10904</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2017-10904</guid>
    <pubDate>Sat, 16 Dec 2017 02:29:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2017-10904</strong></p>
  <p>Qt for Android prior to 5.9.0 allows remote attackers to execute arbitrary OS commands via unspecified vectors.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-78</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2017-10904">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2017-15011 – The named pipes in qtsingleapp in Qt 5.x, as used in qBittorrent and SugarSync, ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2017-15011</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2017-15011</guid>
    <pubDate>Wed, 04 Oct 2017 01:29:03 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2017-15011</strong></p>
  <p>The named pipes in qtsingleapp in Qt 5.x, as used in qBittorrent and SugarSync, are configured for remote access and allow remote attackers to cause a denial of service (application crash) via an unspecified string.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-119</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2017-15011">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2015-1329 – Use-after-free vulnerability in oxide::qt::URLRequestDelegatedJob in oxide-qt in...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2015-1329</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2015-1329</guid>
    <pubDate>Wed, 20 Sep 2017 16:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2015-1329</strong></p>
  <p>Use-after-free vulnerability in oxide::qt::URLRequestDelegatedJob in oxide-qt in Ubuntu 15.04 and 14.04 LTS might allow remote attackers to execute arbitrary code.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-416</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2015-1329">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2015-1332 – The oxide::JavaScriptDialogManager function in oxide-qt before 1.9.1 as packaged...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2015-1332</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2015-1332</guid>
    <pubDate>Tue, 25 Jul 2017 18:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2015-1332</strong></p>
  <p>The oxide::JavaScriptDialogManager function in oxide-qt before 1.9.1 as packaged in Ubuntu 15.04 and Ubuntu 14.04 allows remote attackers to cause a denial of service (application crash) or execute arbitrary code via a crafted website.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-119</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2015-1332">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2016-2521 – Untrusted search path vulnerability in the WiresharkApplication class in ui/qt/w...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2016-2521</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2016-2521</guid>
    <pubDate>Sun, 28 Feb 2016 04:59:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2016-2521</strong></p>
  <p>Untrusted search path vulnerability in the WiresharkApplication class in ui/qt/wireshark_application.cpp in Wireshark 1.12.x before 1.12.10 and 2.0.x before 2.0.2 on Windows allows local users to gain privileges via a Trojan horse riched20.dll.dll file in the current working directory, related to use of QLibrary.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-264</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2016-2521">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2013-2292 – bitcoind and Bitcoin-Qt 0.8.0 and earlier allow remote attackers to cause a deni...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2013-2292</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2013-2292</guid>
    <pubDate>Tue, 12 Mar 2013 11:28:18 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2013-2292</strong></p>
  <p>bitcoind and Bitcoin-Qt 0.8.0 and earlier allow remote attackers to cause a denial of service (electricity consumption) by mining a block to create a nonstandard Bitcoin transaction containing multiple OP_CHECKSIG script opcodes.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-399</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2013-2292">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2012-4684 – The alert functionality in bitcoind and Bitcoin-Qt before 0.7.0 supports differe...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2012-4684</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2012-4684</guid>
    <pubDate>Tue, 12 Mar 2013 11:28:18 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2012-4684</strong></p>
  <p>The alert functionality in bitcoind and Bitcoin-Qt before 0.7.0 supports different character representations of the same signature data, but relies on a hash of this signature, which allows remote attackers to cause a denial of service (resource consumption) via a valid modified signature for a circulating alert.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-399</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2012-4684">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2012-1910 – Bitcoin-Qt 0.5.0.x before 0.5.0.5; 0.5.1.x, 0.5.2.x, and 0.5.3.x before 0.5.3.1;...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2012-1910</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2012-1910</guid>
    <pubDate>Mon, 06 Aug 2012 16:55:01 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2012-1910</strong></p>
  <p>Bitcoin-Qt 0.5.0.x before 0.5.0.5; 0.5.1.x, 0.5.2.x, and 0.5.3.x before 0.5.3.1; and 0.6.x before 0.6.0rc4 on Windows does not use MinGW multithread-safe exception handling, which allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via crafted Bitcoin protocol messages.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2012-1910">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2011-3194 – Buffer overflow in the TIFF reader in gui/image/qtiffhandler.cpp in Qt 4.7.4 all...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2011-3194</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2011-3194</guid>
    <pubDate>Sat, 16 Jun 2012 00:55:04 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2011-3194</strong></p>
  <p>Buffer overflow in the TIFF reader in gui/image/qtiffhandler.cpp in Qt 4.7.4 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via the TIFFTAG_SAMPLESPERPIXEL tag in a greyscale TIFF image with multiple samples per pixel.</p>
  <p><strong>CVSS:</strong> 9.3 · <strong>CWE:</strong> CWE-119</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2011-3194">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2011-3193 – Heap-based buffer overflow in the Lookup_MarkMarkPos function in the HarfBuzz mo...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2011-3193</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2011-3193</guid>
    <pubDate>Sat, 16 Jun 2012 00:55:03 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2011-3193</strong></p>
  <p>Heap-based buffer overflow in the Lookup_MarkMarkPos function in the HarfBuzz module (harfbuzz-gpos.c), as used by Qt before 4.7.4 and Pango, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted font file.</p>
  <p><strong>CVSS:</strong> 9.3 · <strong>CWE:</strong> CWE-787</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2011-3193">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2010-1766 – Off-by-one error in the WebSocketHandshake::readServerHandshake function in webs...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2010-1766</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2010-1766</guid>
    <pubDate>Thu, 22 Jul 2010 05:42:55 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2010-1766</strong></p>
  <p>Off-by-one error in the WebSocketHandshake::readServerHandshake function in websockets/WebSocketHandshake.cpp in WebCore in WebKit before r56380, as used in Qt and other products, allows remote websockets servers to cause a denial of service (memory corruption) or possibly have unspecified other impact via an upgrade header that is long and invalid.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-189</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2010-1766">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2009-1725 – WebKit in Apple Safari before 4.0.2, as used on iPhone OS before 3.1, iPhone OS ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2009-1725</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2009-1725</guid>
    <pubDate>Thu, 09 Jul 2009 17:30:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2009-1725</strong></p>
  <p>WebKit in Apple Safari before 4.0.2, as used on iPhone OS before 3.1, iPhone OS before 3.1.1 for iPod touch, and other platforms; KHTML in kdelibs in KDE; QtWebKit (aka Qt toolkit); and possibly other products do not properly handle numeric character references, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a cra…</p>
  <p><strong>CVSS:</strong> 9.3 · <strong>CWE:</strong> CWE-189</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2009-1725">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2009-1551 – Multiple PHP remote file inclusion vulnerabilities in Qt quickteam 2 allow remot...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2009-1551</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2009-1551</guid>
    <pubDate>Wed, 06 May 2009 15:30:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2009-1551</strong></p>
  <p>Multiple PHP remote file inclusion vulnerabilities in Qt quickteam 2 allow remote attackers to execute arbitrary PHP code via a URL in the (1) qte_web_path parameter to qte_web.php and the (2) qte_root parameter to bin/qte_init.php.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2009-1551">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2008-5237 – Multiple integer overflows in xine-lib 1.1.12, and other 1.1.15 and earlier vers...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2008-5237</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2008-5237</guid>
    <pubDate>Wed, 26 Nov 2008 01:30:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2008-5237</strong></p>
  <p>Multiple integer overflows in xine-lib 1.1.12, and other 1.1.15 and earlier versions, allow remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via (1) crafted width and height values that are not validated by the mymng_process_header function in demux_mng.c before use in an allocation calculation or (2) crafted current_atom_size and string_size values process…</p>
  <p><strong>CVSS:</strong> 10.0 · <strong>CWE:</strong> CWE-189</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2008-5237">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2008-5234 – Multiple heap-based buffer overflows in xine-lib 1.1.12, and other versions befo...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2008-5234</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2008-5234</guid>
    <pubDate>Wed, 26 Nov 2008 01:30:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2008-5234</strong></p>
  <p>Multiple heap-based buffer overflows in xine-lib 1.1.12, and other versions before 1.1.15, allow remote attackers to execute arbitrary code via vectors related to (1) a crafted metadata atom size processed by the parse_moov_atom function in demux_qt.c and (2) frame reading in the id3v23_interp_frame function in id3.c.  NOTE: as of 20081122, it is possible that vector 1 has not been fixed in 1.1.1…</p>
  <p><strong>CVSS:</strong> 9.3 · <strong>CWE:</strong> CWE-119</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2008-5234">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2007-4137 – Off-by-one error in the QUtf8Decoder::toUnicode function in Trolltech Qt 3 allow...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2007-4137</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2007-4137</guid>
    <pubDate>Tue, 18 Sep 2007 19:17:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2007-4137</strong></p>
  <p>Off-by-one error in the QUtf8Decoder::toUnicode function in Trolltech Qt 3 allows context-dependent attackers to cause a denial of service (crash) via a crafted Unicode string that triggers a heap-based buffer overflow.  NOTE: Qt 4 has the same error in the QUtf8Codec::convertToUnicode function, but it is not exploitable.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-119</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2007-4137">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2005-4279 – Untrusted search path vulnerability in Qt-UnixODBC before 3.3.4-r1 on Gentoo Lin...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2005-4279</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2005-4279</guid>
    <pubDate>Fri, 16 Dec 2005 11:03:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2005-4279</strong></p>
  <p>Untrusted search path vulnerability in Qt-UnixODBC before 3.3.4-r1 on Gentoo Linux allows local users in the portage group to gain privileges via a malicious shared object in the Portage temporary build directory, which is part of the RUNPATH.</p>
  <p><strong>CVSS:</strong> 7.2 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2005-4279">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2004-0691 – Heap-based buffer overflow in the BMP image format parser for the QT library (qt...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2004-0691</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2004-0691</guid>
    <pubDate>Tue, 28 Sep 2004 04:00:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2004-0691</strong></p>
  <p>Heap-based buffer overflow in the BMP image format parser for the QT library (qt3) before 3.3.3 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2004-0691">View on NVD</a></p>
]]>
    </description>
  </item>
</channel>
</rss>
