Unrated severityNVD Advisory· Published Jan 24, 2020· Updated Aug 6, 2024
CVE-2015-9541
CVE-2015-9541
Description
Qt through 5.14 allows an exponential XML entity expansion attack via a crafted SVG document that is mishandled in QXmlStreamReader, a related issue to CVE-2003-1564.
Affected products
3- Qt/Qtdescription
- osv-coords2 versions
< 5.12.5-6.el8+ 1 more
- (no CPE)range: < 5.12.5-6.el8
- (no CPE)range: < 5.12.5-2.el8
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/2PT6327C64Q4RBFRWUSBKCG7SVGBWU5W/mitrevendor-advisoryx_refsource_FEDORA
- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/EZMMF4OEJAZRVKVXNO7IZWLEZVQGJN6G/mitrevendor-advisoryx_refsource_FEDORA
- bugreports.qt.io/browse/QTBUG-47417mitrex_refsource_MISC
News mentions
0No linked articles in our index yet.