Updated qt4 packages fix security vulnerabilities:
A double-free or corruption during parsing of a specially crafted illegal
XML document (CVE-2018-15518).
A malformed SVG image could cause a segmentation fault in qsvghandler.cpp
(CVE-2018-19869).
A malformed GIF image might have caused a NULL pointer dereference in
QGifHandler resulting in a segmentation fault (CVE-2018-19870).
There was an uncontrolled resource consumption in QTgaFile (CVE-2018-19871).
QBmpHandler had a buffer overflow via BMP data (CVE-2018-19873).
- https://bugs.mageia.org/show_bug.cgi?id=26505
- https://lists.debian.org/debian-lts-announce/2019/05/msg00014.html
- https://www.cve.org/CVERecord?id=CVE-2018-15518
- https://www.cve.org/CVERecord?id=CVE-2018-19869
- https://www.cve.org/CVERecord?id=CVE-2018-19870
- https://www.cve.org/CVERecord?id=CVE-2018-19871
- https://www.cve.org/CVERecord?id=CVE-2018-19873
- 7/core/qt4-4.8.7-26.1.mga7
Get the latest Linux and open source security news straight to your inbox.