Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 515
Alerts This Week
Warning Icon 1 515

Gentoo GLSA-200708-16 Normal: Qt Format String Remote Execution Risk

gentoo
Calendar Grey August 23, 2007
Scroller Gentoo
Significant vulnerabilities in Qt format strings could potentially enable remote code execution in specific applications running on Gentoo. It is advisable to apply updates.
Format string vulnerabilities in Qt 3 may lead to the remote execution of arbitrary code in some Qt applications.

Summary

Gentoo Linux Security Advisory GLSA 200708-16 https://security.gentoo.org/ Severity: Normal Title: Qt: Multiple format string vulnerabilities Date: August 22, 2007 Bugs: #185446 ID: 200708-16

Synopsis ======= Format string vulnerabilities in Qt 3 may lead to the remote execution of arbitrary code in some Qt applications.
Background ========= Qt is a cross-platform GUI framework, which is used e.g. by KDE.
Affected packages ================ ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 x11-libs/qt < 3.3.8-r3 >= 3.3.8-r3
========== Tim Brown of Portcullis Computer Security Ltd and Dirk Mueller of KDE reported multiple format string errors in qWarning() calls in files qtextedit.cpp, qdatat...

Read the Full Advisory

Resolution

References

Availability

style>.gentoo_availability{display:block;}

Concerns

Synopsis

Background

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Affected Packages

Impact

Workaround