MGASA-2020-0204

Source
https://advisories.mageia.org/MGASA-2020-0204.html
Import Source
https://advisories.mageia.org/MGASA-2020-0204.json
JSON Data
https://api.test.osv.dev/v1/vulns/MGASA-2020-0204
Related
Published
2020-05-08T10:57:54Z
Modified
2020-05-08T10:23:29Z
Summary
Updated qt4 packages fix security vulnerabilities
Details

Updated qt4 packages fix security vulnerabilities:

A double-free or corruption during parsing of a specially crafted illegal XML document (CVE-2018-15518).

A malformed SVG image could cause a segmentation fault in qsvghandler.cpp (CVE-2018-19869).

A malformed GIF image might have caused a NULL pointer dereference in QGifHandler resulting in a segmentation fault (CVE-2018-19870).

There was an uncontrolled resource consumption in QTgaFile (CVE-2018-19871).

QBmpHandler had a buffer overflow via BMP data (CVE-2018-19873).

References
Credits

Affected packages