An update that solves two vulnerabilities can now be installed.. # Security update for libqt5-qtbase Announcement ID: SUSE-SU-2025:3723-1 Release Date: 2025-10-22T11:22:40Z Rating: moderate References: * bsc#1239896 * bsc#1243958 Cross-References: * CVE-2025-30348 * CVE-2025-5455 CVSS scores: * CVE-2025-30348 ( SUSE ): 6.9 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N * CVE-2025-30348 ( SUSE ): 5.3 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L * CVE-2025-30348 ( NVD ): 5.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:L * CVE-2025-30348 ( NVD ): 5.3 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L * CVE-2025-5455 ( SUSE ): 5.3 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L * CVE-2025-5455 ( NVD ): 8.4 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:A/VC:N/VI:H/VA:H/SC:N/SI:H/SA:H/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:U/V:X/RE:M/U:Clear Affected Products: * Basesystem Module 15-SP6 * Basesystem Module 15-SP7 * Desktop Applications Module 15-SP6 * Desktop Applications Module 15-SP7 * openSUSE Leap 15.6 * SUSE Linux Enterprise Desktop 15 SP6 * SUSE Linux Enterprise Desktop 15 SP7 * SUSE Linux Enterprise Real Time 15 SP6 * SUSE Linux Enterprise Real Time 15 SP7 * SUSE Linux Enterprise Server 15 SP6 * SUSE Linux Enterprise Server 15 SP7 * SUSE Linux Enterprise Server for SAP Applications 15 SP6 * SUSE Linux Enterprise Server for SAP Applications 15 SP7 An update that solves two vulnerabilities can now be installed. ## Description: This update for libqt5-qtbase fixes the following issues: Security issues fixed: * CVE-2025-5455: processing of malformed data in `qDecodeDataUrl()` can trigger assertion and cause a crash (bsc#1243958). * CVE-2025-30348: complex algorithm used in `encodeText` in QDom when processing XML data can cause low performance (bsc#1239896). Other issues fixed: * Initialize a member variable in `QObjectPrivate::Signal` that was uninitialized under some circumstances. * Fix a crash when parsing a particular glyph in a particular font. * Avoid repeatedly registering xsettings callbacks when switching cursor themes. * Check validity of RandR output info before using it. * Fix reparenting a window so it takes effect even if there are no other state changes to the window. ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * Basesystem Module 15-SP7 zypper in -t patch SUSE-SLE-Module-Basesystem-15-SP7-2025-3723=1 * Desktop Applications Module 15-SP6 zypper in -t patch SUSE-SLE-Module-Desktop-Applications-15-SP6-2025-3723=1 * Desktop Applications Module 15-SP7 zypper in -t patch SUSE-SLE-Module-Desktop-Applications-15-SP7-2025-3723=1 * openSUSE Leap 15.6 zypper in -t patch SUSE-2025-3723=1 openSUSE-SLE-15.6-2025-3723=1 * Basesystem Module 15-SP6 zypper in -t patch SUSE-SLE-Module-Basesystem-15-SP6-2025-3723=1 ## Package List: * Basesystem Module 15-SP7 (aarch64 ppc64le s390x x86_64) * libQt5Sql5-sqlite-5.15.12+kde151-150600.3.9.1 * libQt5Widgets-devel-5.15.12+kde151-150600.3.9.1 * libQt5Sql5-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5DBus-devel-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5OpenGL5-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5Network5-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5Network5-5.15.12+kde151-150600.3.9.1 * libQt5PlatformHeaders-devel-5.15.12+kde151-150600.3.9.1 * libQt5PrintSupport5-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5Concurrent5-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5Gui5-5.15.12+kde151-150600.3.9.1 * libQt5Network-devel-5.15.12+kde151-150600.3.9.1 * libQt5Gui-devel-5.15.12+kde151-150600.3.9.1 * libQt5Sql5-5.15.12+kde151-150600.3.9.1 * libQt5Widgets5-5.15.12+kde151-150600.3.9.1 *libQt5PlatformSupport-devel-static-5.15.12+kde151-150600.3.9.1 * libQt5PrintSupport-devel-5.15.12+kde151-150600.3.9.1 * libQt5Test-devel-5.15.12+kde151-150600.3.9.1 * libQt5DBus5-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5Widgets5-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5Test5-5.15.12+kde151-150600.3.9.1 * libQt5Sql-devel-5.15.12+kde151-150600.3.9.1 * libQt5Core5-5.15.12+kde151-150600.3.9.1 * libQt5Test5-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5Concurrent5-5.15.12+kde151-150600.3.9.1 * libqt5-qtbase-common-devel-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5Core5-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5DBus-devel-5.15.12+kde151-150600.3.9.1 * libqt5-qtbase-common-devel-5.15.12+kde151-150600.3.9.1 * libQt5Sql5-sqlite-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5Xml5-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5Core-devel-5.15.12+kde151-150600.3.9.1 * libQt5Gui5-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5Xml5-5.15.12+kde151-150600.3.9.1 * libQt5PrintSupport5-5.15.12+kde151-150600.3.9.1 * libqt5-qtbase-devel-5.15.12+kde151-150600.3.9.1 * libQt5KmsSupport-devel-static-5.15.12+kde151-150600.3.9.1 * libQt5OpenGL-devel-5.15.12+kde151-150600.3.9.1 * libQt5DBus5-5.15.12+kde151-150600.3.9.1 * libqt5-qtbase-debugsource-5.15.12+kde151-150600.3.9.1 * libQt5Xml-devel-5.15.12+kde151-150600.3.9.1 * libQt5Concurrent-devel-5.15.12+kde151-150600.3.9.1 * libQt5OpenGL5-5.15.12+kde151-150600.3.9.1 * Basesystem Module 15-SP7 (noarch) * libQt5KmsSupport-private-headers-devel-5.15.12+kde151-150600.3.9.1 * libQt5Test-private-headers-devel-5.15.12+kde151-150600.3.9.1 * libQt5Network-private-headers-devel-5.15.12+kde151-150600.3.9.1 * libQt5DBus-private-headers-devel-5.15.12+kde151-150600.3.9.1 * libQt5Gui-private-headers-devel-5.15.12+kde151-150600.3.9.1 * libQt5Widgets-private-headers-devel-5.15.12+kde151-150600.3.9.1 *libQt5OpenGL-private-headers-devel-5.15.12+kde151-150600.3.9.1 * libqt5-qtbase-private-headers-devel-5.15.12+kde151-150600.3.9.1 * libQt5PlatformSupport-private-headers-devel-5.15.12+kde151-150600.3.9.1 * libQt5PrintSupport-private-headers-devel-5.15.12+kde151-150600.3.9.1 * libQt5Core-private-headers-devel-5.15.12+kde151-150600.3.9.1 * libQt5Sql-private-headers-devel-5.15.12+kde151-150600.3.9.1 * Desktop Applications Module 15-SP6 (aarch64 ppc64le s390x x86_64) * libqt5-qtbase-platformtheme-gtk3-5.15.12+kde151-150600.3.9.1 * libQt5Sql5-unixODBC-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5Sql5-mysql-5.15.12+kde151-150600.3.9.1 * libQt5Sql5-unixODBC-5.15.12+kde151-150600.3.9.1 * libQt5Sql5-mysql-debuginfo-5.15.12+kde151-150600.3.9.1 * libqt5-qtbase-platformtheme-gtk3-debuginfo-5.15.12+kde151-150600.3.9.1 * libqt5-qtbase-debugsource-5.15.12+kde151-150600.3.9.1 * libQt5OpenGLExtensions-devel-static-5.15.12+kde151-150600.3.9.1 * libQt5Sql5-postgresql-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5Sql5-postgresql-5.15.12+kde151-150600.3.9.1 * Desktop Applications Module 15-SP7 (aarch64 ppc64le s390x x86_64) * libqt5-qtbase-platformtheme-gtk3-5.15.12+kde151-150600.3.9.1 * libQt5Sql5-unixODBC-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5Sql5-mysql-5.15.12+kde151-150600.3.9.1 * libQt5Sql5-unixODBC-5.15.12+kde151-150600.3.9.1 * libQt5Sql5-mysql-debuginfo-5.15.12+kde151-150600.3.9.1 * libqt5-qtbase-platformtheme-gtk3-debuginfo-5.15.12+kde151-150600.3.9.1 * libqt5-qtbase-debugsource-5.15.12+kde151-150600.3.9.1 * libQt5OpenGLExtensions-devel-static-5.15.12+kde151-150600.3.9.1 * libQt5Sql5-postgresql-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5Sql5-postgresql-5.15.12+kde151-150600.3.9.1 * openSUSE Leap 15.6 (x86_64) * libQt5Network-devel-32bit-5.15.12+kde151-150600.3.9.1 * libQt5Concurrent5-32bit-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5Core5-32bit-5.15.12+kde151-150600.3.9.1 *libQt5Network5-32bit-5.15.12+kde151-150600.3.9.1 * libQt5Sql5-32bit-5.15.12+kde151-150600.3.9.1 * libQt5PrintSupport-devel-32bit-5.15.12+kde151-150600.3.9.1 * libQt5DBus-devel-32bit-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5OpenGL5-32bit-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5Sql5-postgresql-32bit-debuginfo-5.15.12+kde151-150600.3.9.1 * libqt5-qtbase-examples-32bit-5.15.12+kde151-150600.3.9.1 * libQt5DBus5-32bit-5.15.12+kde151-150600.3.9.1 * libQt5Concurrent5-32bit-5.15.12+kde151-150600.3.9.1 * libQt5Concurrent-devel-32bit-5.15.12+kde151-150600.3.9.1 * libQt5Xml5-32bit-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5Gui5-32bit-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5Bootstrap-devel-static-32bit-5.15.12+kde151-150600.3.9.1 * libQt5Sql5-unixODBC-32bit-5.15.12+kde151-150600.3.9.1 * libQt5Gui5-32bit-5.15.12+kde151-150600.3.9.1 * libQt5PrintSupport5-32bit-5.15.12+kde151-150600.3.9.1 * libQt5Core-devel-32bit-5.15.12+kde151-150600.3.9.1 * libQt5OpenGL5-32bit-5.15.12+kde151-150600.3.9.1 * libQt5Test5-32bit-5.15.12+kde151-150600.3.9.1 * libQt5Network5-32bit-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5PrintSupport5-32bit-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5Sql5-unixODBC-32bit-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5Widgets-devel-32bit-5.15.12+kde151-150600.3.9.1 * libQt5OpenGL-devel-32bit-5.15.12+kde151-150600.3.9.1 * libQt5PlatformSupport-devel-static-32bit-5.15.12+kde151-150600.3.9.1 * libQt5Sql5-postgresql-32bit-5.15.12+kde151-150600.3.9.1 * libQt5Gui-devel-32bit-5.15.12+kde151-150600.3.9.1 * libQt5Sql5-sqlite-32bit-5.15.12+kde151-150600.3.9.1 * libQt5Sql5-32bit-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5DBus-devel-32bit-5.15.12+kde151-150600.3.9.1 * libQt5Sql5-mysql-32bit-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5Test5-32bit-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5Test-devel-32bit-5.15.12+kde151-150600.3.9.1 *libQt5OpenGLExtensions-devel-static-32bit-5.15.12+kde151-150600.3.9.1 * libQt5Widgets5-32bit-5.15.12+kde151-150600.3.9.1 * libQt5Sql-devel-32bit-5.15.12+kde151-150600.3.9.1 * libQt5Sql5-mysql-32bit-5.15.12+kde151-150600.3.9.1 * libQt5Sql5-sqlite-32bit-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5Widgets5-32bit-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5Xml5-32bit-5.15.12+kde151-150600.3.9.1 * libqt5-qtbase-examples-32bit-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5DBus5-32bit-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5Xml-devel-32bit-5.15.12+kde151-150600.3.9.1 * libQt5Core5-32bit-debuginfo-5.15.12+kde151-150600.3.9.1 * openSUSE Leap 15.6 (aarch64 ppc64le s390x x86_64 i586) * libQt5Sql5-sqlite-5.15.12+kde151-150600.3.9.1 * libQt5Widgets-devel-5.15.12+kde151-150600.3.9.1 * libQt5Sql5-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5DBus-devel-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5OpenGL5-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5Sql5-unixODBC-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5Sql5-unixODBC-5.15.12+kde151-150600.3.9.1 * libQt5Network5-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5Sql5-mysql-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5Network5-5.15.12+kde151-150600.3.9.1 * libQt5PlatformHeaders-devel-5.15.12+kde151-150600.3.9.1 * libQt5PrintSupport5-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5Concurrent5-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5Gui5-5.15.12+kde151-150600.3.9.1 * libQt5Network-devel-5.15.12+kde151-150600.3.9.1 * libQt5Gui-devel-5.15.12+kde151-150600.3.9.1 * libQt5Sql5-5.15.12+kde151-150600.3.9.1 * libQt5Sql5-postgresql-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5Widgets5-5.15.12+kde151-150600.3.9.1 * libqt5-qtbase-platformtheme-xdgdesktopportal-debuginfo-5.15.12+kde151-150600.3.9.1 * libqt5-qtbase-examples-5.15.12+kde151-150600.3.9.1 * libqt5-qtbase-platformtheme-gtk3-5.15.12+kde151-150600.3.9.1 *libQt5PlatformSupport-devel-static-5.15.12+kde151-150600.3.9.1 * libQt5PrintSupport-devel-5.15.12+kde151-150600.3.9.1 * libQt5Test-devel-5.15.12+kde151-150600.3.9.1 * libQt5DBus5-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5Widgets5-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5Test5-5.15.12+kde151-150600.3.9.1 * libQt5OpenGLExtensions-devel-static-5.15.12+kde151-150600.3.9.1 * libQt5Sql5-postgresql-5.15.12+kde151-150600.3.9.1 * libQt5Sql-devel-5.15.12+kde151-150600.3.9.1 * libQt5Core5-5.15.12+kde151-150600.3.9.1 * libqt5-qtbase-platformtheme-xdgdesktopportal-5.15.12+kde151-150600.3.9.1 * libQt5Bootstrap-devel-static-5.15.12+kde151-150600.3.9.1 * libQt5Test5-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5Concurrent5-5.15.12+kde151-150600.3.9.1 * libqt5-qtbase-common-devel-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5Sql5-mysql-5.15.12+kde151-150600.3.9.1 * libQt5Core5-debuginfo-5.15.12+kde151-150600.3.9.1 * libqt5-qtbase-platformtheme-gtk3-debuginfo-5.15.12+kde151-150600.3.9.1 * libqt5-qtbase-examples-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5DBus-devel-5.15.12+kde151-150600.3.9.1 * libqt5-qtbase-common-devel-5.15.12+kde151-150600.3.9.1 * libQt5Sql5-sqlite-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5Xml5-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5Core-devel-5.15.12+kde151-150600.3.9.1 * libQt5Gui5-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5Xml5-5.15.12+kde151-150600.3.9.1 * libQt5PrintSupport5-5.15.12+kde151-150600.3.9.1 * libqt5-qtbase-devel-5.15.12+kde151-150600.3.9.1 * libQt5KmsSupport-devel-static-5.15.12+kde151-150600.3.9.1 * libQt5OpenGL-devel-5.15.12+kde151-150600.3.9.1 * libQt5DBus5-5.15.12+kde151-150600.3.9.1 * libqt5-qtbase-debugsource-5.15.12+kde151-150600.3.9.1 * libQt5Xml-devel-5.15.12+kde151-150600.3.9.1 * libQt5Concurrent-devel-5.15.12+kde151-150600.3.9.1 * libQt5OpenGL5-5.15.12+kde151-150600.3.9.1 * openSUSE Leap 15.6 (noarch) *libQt5KmsSupport-private-headers-devel-5.15.12+kde151-150600.3.9.1 * libQt5Test-private-headers-devel-5.15.12+kde151-150600.3.9.1 * libQt5Network-private-headers-devel-5.15.12+kde151-150600.3.9.1 * libQt5DBus-private-headers-devel-5.15.12+kde151-150600.3.9.1 * libQt5Gui-private-headers-devel-5.15.12+kde151-150600.3.9.1 * libQt5Widgets-private-headers-devel-5.15.12+kde151-150600.3.9.1 * libQt5OpenGL-private-headers-devel-5.15.12+kde151-150600.3.9.1 * libqt5-qtbase-private-headers-devel-5.15.12+kde151-150600.3.9.1 * libQt5PlatformSupport-private-headers-devel-5.15.12+kde151-150600.3.9.1 * libQt5PrintSupport-private-headers-devel-5.15.12+kde151-150600.3.9.1 * libQt5Core-private-headers-devel-5.15.12+kde151-150600.3.9.1 * libQt5Sql-private-headers-devel-5.15.12+kde151-150600.3.9.1 * openSUSE Leap 15.6 (aarch64_ilp32) * libQt5Sql5-sqlite-64bit-5.15.12+kde151-150600.3.9.1 * libQt5PrintSupport-devel-64bit-5.15.12+kde151-150600.3.9.1 * libQt5Concurrent5-64bit-5.15.12+kde151-150600.3.9.1 * libQt5OpenGLExtensions-devel-static-64bit-5.15.12+kde151-150600.3.9.1 * libQt5DBus5-64bit-5.15.12+kde151-150600.3.9.1 * libQt5Sql5-mysql-64bit-5.15.12+kde151-150600.3.9.1 * libQt5OpenGL5-64bit-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5Xml-devel-64bit-5.15.12+kde151-150600.3.9.1 * libQt5Xml5-64bit-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5Sql5-unixODBC-64bit-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5Widgets5-64bit-5.15.12+kde151-150600.3.9.1 * libQt5Concurrent-devel-64bit-5.15.12+kde151-150600.3.9.1 * libQt5Sql5-64bit-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5Gui-devel-64bit-5.15.12+kde151-150600.3.9.1 * libQt5OpenGL-devel-64bit-5.15.12+kde151-150600.3.9.1 * libQt5PrintSupport5-64bit-5.15.12+kde151-150600.3.9.1 * libQt5DBus5-64bit-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5Network-devel-64bit-5.15.12+kde151-150600.3.9.1 * libQt5Sql5-mysql-64bit-debuginfo-5.15.12+kde151-150600.3.9.1 *libQt5Sql5-unixODBC-64bit-5.15.12+kde151-150600.3.9.1 * libQt5Bootstrap-devel-static-64bit-5.15.12+kde151-150600.3.9.1 * libQt5PlatformSupport-devel-static-64bit-5.15.12+kde151-150600.3.9.1 * libQt5DBus-devel-64bit-5.15.12+kde151-150600.3.9.1 * libQt5Widgets5-64bit-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5Concurrent5-64bit-debuginfo-5.15.12+kde151-150600.3.9.1 * libqt5-qtbase-examples-64bit-5.15.12+kde151-150600.3.9.1 * libQt5Core5-64bit-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5OpenGL5-64bit-5.15.12+kde151-150600.3.9.1 * libQt5Core-devel-64bit-5.15.12+kde151-150600.3.9.1 * libqt5-qtbase-examples-64bit-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5Test-devel-64bit-5.15.12+kde151-150600.3.9.1 * libQt5Sql5-64bit-5.15.12+kde151-150600.3.9.1 * libQt5Sql5-sqlite-64bit-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5Test5-64bit-5.15.12+kde151-150600.3.9.1 * libQt5Network5-64bit-5.15.12+kde151-150600.3.9.1 * libQt5Sql-devel-64bit-5.15.12+kde151-150600.3.9.1 * libQt5DBus-devel-64bit-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5Sql5-postgresql-64bit-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5Core5-64bit-5.15.12+kde151-150600.3.9.1 * libQt5Widgets-devel-64bit-5.15.12+kde151-150600.3.9.1 * libQt5Gui5-64bit-5.15.12+kde151-150600.3.9.1 * libQt5Gui5-64bit-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5Test5-64bit-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5Sql5-postgresql-64bit-5.15.12+kde151-150600.3.9.1 * libQt5Network5-64bit-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5Xml5-64bit-5.15.12+kde151-150600.3.9.1 * libQt5PrintSupport5-64bit-debuginfo-5.15.12+kde151-150600.3.9.1 * Basesystem Module 15-SP6 (aarch64 ppc64le s390x x86_64) * libQt5Sql5-sqlite-5.15.12+kde151-150600.3.9.1 * libQt5Widgets-devel-5.15.12+kde151-150600.3.9.1 * libQt5Sql5-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5DBus-devel-debuginfo-5.15.12+kde151-150600.3.9.1 *libQt5OpenGL5-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5Network5-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5Network5-5.15.12+kde151-150600.3.9.1 * libQt5PlatformHeaders-devel-5.15.12+kde151-150600.3.9.1 * libQt5PrintSupport5-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5Concurrent5-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5Gui5-5.15.12+kde151-150600.3.9.1 * libQt5Network-devel-5.15.12+kde151-150600.3.9.1 * libQt5Gui-devel-5.15.12+kde151-150600.3.9.1 * libQt5Sql5-5.15.12+kde151-150600.3.9.1 * libQt5Widgets5-5.15.12+kde151-150600.3.9.1 * libQt5PlatformSupport-devel-static-5.15.12+kde151-150600.3.9.1 * libQt5PrintSupport-devel-5.15.12+kde151-150600.3.9.1 * libQt5Test-devel-5.15.12+kde151-150600.3.9.1 * libQt5DBus5-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5Widgets5-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5Test5-5.15.12+kde151-150600.3.9.1 * libQt5Sql-devel-5.15.12+kde151-150600.3.9.1 * libQt5Core5-5.15.12+kde151-150600.3.9.1 * libQt5Test5-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5Concurrent5-5.15.12+kde151-150600.3.9.1 * libqt5-qtbase-common-devel-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5Core5-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5DBus-devel-5.15.12+kde151-150600.3.9.1 * libqt5-qtbase-common-devel-5.15.12+kde151-150600.3.9.1 * libQt5Sql5-sqlite-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5Xml5-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5Core-devel-5.15.12+kde151-150600.3.9.1 * libQt5Gui5-debuginfo-5.15.12+kde151-150600.3.9.1 * libQt5Xml5-5.15.12+kde151-150600.3.9.1 * libQt5PrintSupport5-5.15.12+kde151-150600.3.9.1 * libqt5-qtbase-devel-5.15.12+kde151-150600.3.9.1 * libQt5KmsSupport-devel-static-5.15.12+kde151-150600.3.9.1 * libQt5OpenGL-devel-5.15.12+kde151-150600.3.9.1 * libQt5DBus5-5.15.12+kde151-150600.3.9.1 * libqt5-qtbase-debugsource-5.15.12+kde151-150600.3.9.1 * libQt5Xml-devel-5.15.12+kde151-150600.3.9.1 *libQt5Concurrent-devel-5.15.12+kde151-150600.3.9.1 * libQt5OpenGL5-5.15.12+kde151-150600.3.9.1 * Basesystem Module 15-SP6 (noarch) * libQt5KmsSupport-private-headers-devel-5.15.12+kde151-150600.3.9.1 * libQt5Test-private-headers-devel-5.15.12+kde151-150600.3.9.1 * libQt5Network-private-headers-devel-5.15.12+kde151-150600.3.9.1 * libQt5DBus-private-headers-devel-5.15.12+kde151-150600.3.9.1 * libQt5Gui-private-headers-devel-5.15.12+kde151-150600.3.9.1 * libQt5Widgets-private-headers-devel-5.15.12+kde151-150600.3.9.1 * libQt5OpenGL-private-headers-devel-5.15.12+kde151-150600.3.9.1 * libqt5-qtbase-private-headers-devel-5.15.12+kde151-150600.3.9.1 * libQt5PlatformSupport-private-headers-devel-5.15.12+kde151-150600.3.9.1 * libQt5PrintSupport-private-headers-devel-5.15.12+kde151-150600.3.9.1 * libQt5Core-private-headers-devel-5.15.12+kde151-150600.3.9.1 * libQt5Sql-private-headers-devel-5.15.12+kde151-150600.3.9.1 ## References: * https://www.suse.com/security/cve/CVE-2025-30348.html * https://www.suse.com/security/cve/CVE-2025-5455.html * https://bugzilla.suse.com/show_bug.cgi?id=1239896 * https://bugzilla.suse.com/show_bug.cgi?id=1243958 . This advisory details updates for libqt5-qtbase addressing two significant issues in openSUSE systems in moderation.. libqt5-qtbase security update, vulnerability patch openSUSE, moderate severity issues. . LinuxSecurity.com Team
An update for dpdk is now available for Red Hat Enterprise Linux 8.2 Extended Update Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,. -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 ==================================================================== Red Hat Security Advisory Synopsis: Important: dpdk security update Advisory ID: RHSA-2021:1239-01 Product: Red Hat Enterprise Linux Advisory URL: https://access.redhat.com/errata/RHSA-2021:1239 Issue date: 2021-04-19 CVE Names: CVE-2020-10725 ==================================================================== 1. Summary: An update for dpdk is now available for Red Hat Enterprise Linux 8.2 Extended Update Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. 2. Relevant releases/architectures: Red Hat Enterprise Linux AppStream EUS (v. 8.2) - aarch64, noarch, ppc64le, x86_64 3. Description: The dpdk packages provide the Data Plane Development Kit, which is a set of libraries and drivers for fast packet processing in the user space. Security Fix(es): * dpdk: librte_vhost Malicious guest could cause segfault by sending invalid Virtio descriptor (CVE-2020-10725) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. 4. Solution: For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 5. Bugs fixed (https://bugzilla.redhat.com/): 1828894 - CVE-2020-10725 dpdk: librte_vhost Malicious guest could cause segfault by sending invalid Virtiodescriptor 6. Package List: Red Hat Enterprise Linux AppStream EUS (v. 8.2): Source: dpdk-19.11-5.el8_2.src.rpm aarch64: dpdk-19.11-5.el8_2.aarch64.rpm dpdk-debuginfo-19.11-5.el8_2.aarch64.rpm dpdk-debugsource-19.11-5.el8_2.aarch64.rpm dpdk-devel-19.11-5.el8_2.aarch64.rpm dpdk-devel-debuginfo-19.11-5.el8_2.aarch64.rpm dpdk-tools-19.11-5.el8_2.aarch64.rpm noarch: dpdk-doc-19.11-5.el8_2.noarch.rpm ppc64le: dpdk-19.11-5.el8_2.ppc64le.rpm dpdk-debuginfo-19.11-5.el8_2.ppc64le.rpm dpdk-debugsource-19.11-5.el8_2.ppc64le.rpm dpdk-devel-19.11-5.el8_2.ppc64le.rpm dpdk-devel-debuginfo-19.11-5.el8_2.ppc64le.rpm dpdk-tools-19.11-5.el8_2.ppc64le.rpm x86_64: dpdk-19.11-5.el8_2.x86_64.rpm dpdk-debuginfo-19.11-5.el8_2.x86_64.rpm dpdk-debugsource-19.11-5.el8_2.x86_64.rpm dpdk-devel-19.11-5.el8_2.x86_64.rpm dpdk-devel-debuginfo-19.11-5.el8_2.x86_64.rpm dpdk-tools-19.11-5.el8_2.x86_64.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key 7. References: https://access.redhat.com/security/cve/CVE-2020-10725 https://access.redhat.com/security/updates/classification#important 8. Contact: The Red Hat security contact is . More contact details at https://access.redhat.com/security/team/contact Copyright 2021 Red Hat, Inc. -----BEGIN PGP SIGNATURE----- Version: GnuPGv1 iQIVAwUBYH1fAtzjgjWX9erEAQgdCQ//Tcy0GQPnjycMa/QUNb9Sr65WEF3sKnmU 1YZuHpwDqfTkxau8hcBXPUqOCnzv5OTc8mA4pcbIgHMUYVRLRUfo5Qg4yehfyrDz dmzfPRyUm7Lzz/LJPU92tWzN7A+rcc2/JwBgEQQ+03q+ggrALepI1Vi/UqmwAsDK 2LfHiplnRUOzbXXY5SOPuJbpsOrKdTRpKcR/Iu9gUz8nSFD62+zSl93rVCLyl0Uj vBTUv0s5gyYkwIRY0FWIpz8eWseYimHFRv7g0xdv1Pe+ZzWmi9z7jvb8n6yuQEAt j1xO6youm+pYXcagqGGX4wF7uWwtEJyr2O2HHwWtSgzBqs3su7ulcaWH9iDZ4G5o 2Xx6E+E0HYr8zF3VSQhYPslpfYqSuYhP+e9wiHGVn13xUry1R+M+cW5Cz/fCW2il SAADkIz2xz1hnXiISm88cv3iNOyOtEbWq1nFhyIYZsPqGUZXFweYwwo6VoiOxrnT KuMpyQrUhoCcXLpFf9ALrqCBtOgB4a98TWo9JPqKNgSLJot+UlssVkWFXjdFbkgV D28jeZYsVdIPQ4wnRFICk12hJTcuyz3VCcKiHbQwEBJVRsVYBLbncCtvieSQfX4I Saaf2U20jP5lctIDfwkrJVPdKFi0mkt+p2pJ/Foj2OlV+L6i+OFIyC6cXl07IQSM 8M4guhLm4U8=2WOs -----END PGP SIGNATURE----- -- RHSA-announce mailing list
Bug fix and upgrade to version 2.7.7. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2018-f1f44e4c6d 2018-12-09 21:00:33.895074 --------------------------------------------------------------------------------Name : hadoop Product : Fedora 28 Version : 2.7.7 Release : 1.fc28 URL : https://hadoop.apache.org Summary : A software platform for processing vast amounts of data Description : Apache Hadoop is a framework that allows for the distributed processing of large data sets across clusters of computers using simple programming models. It is designed to scale up from single servers to thousands of machines, each offering local computation and storage. --------------------------------------------------------------------------------Update Information: Bug fix and upgrade to version 2.7.7 --------------------------------------------------------------------------------ChangeLog: * Thu Nov 29 2018 Mike Miller - 2.7.7-1 - Upgrade to 2.7.7. Remove patch no longer needed for CVE-2018-8009 * Wed Nov 28 2018 Mike Miller - 2.7.6-5 - Fix NoClassDefFoundError with cglib in Yarn and make top level hadoop package * Fri Jul 6 2018 Christopher Tubbs - 2.7.6-4 - Disable container-executor builds (rhbz#1597446 not fixed on s390x and armv7hl) * Thu Jul 5 2018 Christopher Tubbs - 2.7.6-3 - Fix rhbz#1597446 (container-executor builds) and rhbz#1593020 (CVE-2018-8009) * Fri Jun 29 2018 Mike Miller - 2.7.6-2 - Fix jetty version dependencies * Wed Jun 27 2018 Mike Miller - 2.7.6-1 - Upgrade to version 2.7.6 * Tue May 29 2018 Rafael dos Santos - 2.7.3-10 - Use standard Fedora build/linker flags (rhbz#1540172) * Wed Mar 7 2018 Christopher Tubbs - 2.7.3-9 - Add gcc-c++ BuildRequires * Wed Feb 7 2018 Fedora Release Engineering - 2.7.3-8 - Rebuilt forhttps://fedoraproject.org/wiki/Fedora_28_Mass_Rebuild --------------------------------------------------------------------------------References: [ 1 ] Bug #1654240 - CVE-2018-11766 hadoop: Privilege escalation to root (Incomplete fix for CVE-2016-6811) [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1654240 [ 2 ] Bug #1554525 - When starting Resource Manager - java.lang.NoClassDefFoundError: net/sf/cglib/core/CodeGenerationException https://bugzilla.redhat.com/show_bug.cgi?id=1554525 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2018-f1f44e4c6d' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list --
A vulnerability in file could result in Denial of Service.. - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Gentoo Linux Security Advisory GLSA 201403-03 - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - https://security.gentoo.org/ - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Severity: Normal Title: file: Denial of Service Date: March 13, 2014 Bugs: #501574 ID: 201403-03 - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Synopsis ======= A vulnerability in file could result in Denial of Service. Background ========= file is a utility that guesses a file format by scanning binary data for patterns. Affected packages ================ ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 sys-apps/file < 5.17 > = 5.17 Description ========== A flaw was found in the way the file utility determines the type of a file. Impact ===== A remote attacker could entice a user to open a specially crafted file, possibly resulting in a Denial of Service condition. Workaround ========= There is no known workaround at this time. Resolution ========= All file users should upgrade to the latest version: # emerge --sync # emerge --ask --oneshot --verbose "> =sys-apps/file-5.17" References ========= [ 1 ] CVE-2014-1943 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2014-1943 Availability =========== This GLSA and any updates to it are available for viewing at the Gentoo Security Website: https://security.gentoo.org/glsa/201403-03 Concerns? ======== Security is a primary focus of Gentoo Linux and ensuring the confidentiality and security of our users' machines is of utmost importance to us. Any security concerns should be addressedto
Get the latest Linux and open source security news straight to your inbox.