Alerts This Week
Warning Icon 1 700
Alerts This Week
Warning Icon 1 700

Fedora 42: Fix for qt6-qtdeclarative Denial of Service CVE-2025-12385

fedora
Calendar Grey December 16, 2025
Dist Fedora Esm H88
Fixes an improper img tag size validation flaw in the QtDeclarative component for Fedora 42, enhancing security.
CVE-2025-12385: Fix improper validation of img tag size in Text component parser

Summary

Qt6 - QtDeclarative component.

Update Information:

CVE-2025-12385: Fix improper validation of img tag size in Text component parser

Change Log

* Fri Dec 5 2025 Jan Grulich - 6.9.3-2 - Fix improper validation of img tag size in Text component parser Resolves: CVE-2025-12385

References

Fedora Update Notification FEDORA-2025-62d125612b 2025-12-16 01:13:25.255156+00:00 Name : qt6-qtdeclarative Product : Fedora 42 Version : 6.9.3 Release : 2.fc42 URL : http://www.qt.io Summary : Qt6 - QtDeclarative component Description : Qt6 - QtDeclarative component.

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-62d125612b' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

Severity
important
Lowest
Low
Medium
High
Critical

Name: qt6-qtdeclarative
Product: Fedora 42
Version: 6.9.3
Release: 2.fc42
Summary: Qt6 - QtDeclarative component

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here