Alerts This Week
Warning Icon 1 692
Alerts This Week
Warning Icon 1 692

Mageia 7: 2020-0192 Critical: Qtbase5 XML Entity Expansion Assessment

mageia
Calendar Grey May 5, 2020
Dist Mageia Esm H88
The latest updates for qtbase5 packages address the XML entity expansion security flaw, enhancing Mageia's overall security profile. Refer to CVE-2015-9541 for detailed information.
Updated qtbase5 packages fix security vulnerability: An XML Entity Expansion flaw was found in the QT library

Summary

Updated qtbase5 packages fix security vulnerability:
An XML Entity Expansion flaw was found in the QT library. Applications that use QT to load untrusted images, for example, SVG images, or untrusted XML documents, may be vulnerable to this flaw. This flaw allows an attacker to cause a denial of service (CVE-2015-9541).

References

- https://bugs.mageia.org/show_bug.cgi?id=26554

- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/thread/2PT6327C64Q4RBFRWUSBKCG7SVGBWU5W/

- https://www.cve.org/CVERecord?id=CVE-2015-9541

Resolution

SRPMS

- 7/core/qtbase5-5.12.6-3.mga7

Severity
critical
Lowest
Low
Medium
High
Critical

Publication date: 05 May 2020
URL: https://advisories.mageia.org/MGASA-2020-0192.html
Type: security
CVE: CVE-2015-9541

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here