Import Source
https://github.com/microsoft/AzureLinuxVulnerabilityData/blob/main/osv/AZL-6834.json
JSON Data
https://api.test.osv.dev/v1/vulns/AZL-6834
Upstream
Published
2020-09-14T19:15:10Z
Modified
2026-04-01T05:21:23.723596Z
Severity
  • 7.3 (High) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H CVSS Calculator
Summary
CVE-2020-0570 affecting package qt5-qtsvg for versions less than 5.12.11-3
Details

Uncontrolled search path in the QT Library before 5.14.0, 5.12.7 and 5.9.10 may allow an authenticated user to potentially enable elevation of privilege via local access.

References

Affected packages

Azure Linux:2 / qt5-qtsvg

Package

Name
qt5-qtsvg
Purl
pkg:rpm/azure-linux/qt5-qtsvg

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.12.11-3

Database specific

source
"https://github.com/microsoft/AzureLinuxVulnerabilityData/blob/main/osv/AZL-6834.json"