Import Source
https://github.com/microsoft/AzureLinuxVulnerabilityData/blob/main/osv/AZL-27652.json
JSON Data
https://api.test.osv.dev/v1/vulns/AZL-27652
Upstream
Published
2023-07-13T02:15:09Z
Modified
2026-04-01T05:09:22.112581Z
Severity
  • 7.5 (High) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H CVSS Calculator
Summary
CVE-2023-38197 affecting package qt5-qtbase for versions less than 5.12.11-9
Details

An issue was discovered in Qt before 5.15.15, 6.x before 6.2.10, and 6.3.x through 6.5.x before 6.5.3. There are infinite loops in recursive entity expansion.

References

Affected packages

Azure Linux:2 / qt5-qtbase

Package

Name
qt5-qtbase
Purl
pkg:rpm/azure-linux/qt5-qtbase

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.12.11-9

Database specific

source
"https://github.com/microsoft/AzureLinuxVulnerabilityData/blob/main/osv/AZL-27652.json"