CVE-2025-5683

Source
https://nvd.nist.gov/vuln/detail/CVE-2025-5683
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-5683.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2025-5683
Downstream
Related
Published
2025-06-05T06:15:27Z
Modified
2025-07-07T06:59:35.043813Z
Summary
[none]
Details

When loading a specifically crafted ICNS format image file in QImage then it will trigger a crash. This issue affects Qt from versions 6.3.0 through 6.5.9, from 6.6.0 through 6.8.4, 6.9.0. This is fixed in 6.5.10, 6.8.5 and 6.9.1.

References

Affected packages

Debian:12 / qt6-imageformats

Package

Name
qt6-imageformats
Purl
pkg:deb/debian/qt6-imageformats?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

6.*

6.4.2-1
6.4.2-2
6.4.2-3
6.4.2-4
6.4.2-5
6.6.0-1
6.6.1-1
6.6.2-1
6.6.2-2
6.7.2-1
6.7.2-2
6.8.2-1
6.8.2-2
6.8.2-3
6.8.2-4

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Debian:13 / qt6-imageformats

Package

Name
qt6-imageformats
Purl
pkg:deb/debian/qt6-imageformats?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
6.8.2-4

Affected versions

6.*

6.4.2-1
6.4.2-2
6.4.2-3
6.4.2-4
6.4.2-5
6.6.0-1
6.6.1-1
6.6.2-1
6.6.2-2
6.7.2-1
6.7.2-2
6.8.2-1
6.8.2-2
6.8.2-3

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Debian:11 / qtimageformats-opensource-src

Package

Name
qtimageformats-opensource-src
Purl
pkg:deb/debian/qtimageformats-opensource-src?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

5.*

5.15.2-2
5.15.3-1
5.15.4-1
5.15.4-2
5.15.5-1
5.15.6-1
5.15.6-2
5.15.7-1
5.15.7-2
5.15.7-3
5.15.8-1
5.15.8-2
5.15.9-1
5.15.10-1
5.15.10-2
5.15.12-1
5.15.13-1
5.15.13-2
5.15.15-1
5.15.15-2
5.15.15-3
5.15.15-4

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Debian:12 / qtimageformats-opensource-src

Package

Name
qtimageformats-opensource-src
Purl
pkg:deb/debian/qtimageformats-opensource-src?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

5.*

5.15.8-2
5.15.9-1
5.15.10-1
5.15.10-2
5.15.12-1
5.15.13-1
5.15.13-2
5.15.15-1
5.15.15-2
5.15.15-3
5.15.15-4

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Debian:13 / qtimageformats-opensource-src

Package

Name
qtimageformats-opensource-src
Purl
pkg:deb/debian/qtimageformats-opensource-src?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.15.15-4

Affected versions

5.*

5.15.8-2
5.15.9-1
5.15.10-1
5.15.10-2
5.15.12-1
5.15.13-1
5.15.13-2
5.15.15-1
5.15.15-2
5.15.15-3

Ecosystem specific

{
    "urgency": "not yet assigned"
}