* bsc#1196654 * bsc#1211298 * bsc#1211798 * bsc#1211994 * bsc#1213326 . # Security update for libqt4 Announcement ID: SUSE-SU-2025:02968-1 Release Date: 2025-08-25T06:20:49Z Rating: important References: * bsc#1196654 * bsc#1211298 * bsc#1211798 * bsc#1211994 * bsc#1213326 * bsc#1214327 * bsc#1245609 * bsc#357727 * bsc#552218 * bsc#656144 * bsc#717127 * bsc#875470 Cross-References: * CVE-2021-45930 * CVE-2023-32573 * CVE-2023-32763 * CVE-2023-34410 * CVE-2023-37369 * CVE-2023-38197 * CVE-2025-5455 CVSS scores: * CVE-2021-45930 ( SUSE ): 5.5 CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H * CVE-2021-45930 ( NVD ): 5.5 CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H * CVE-2023-32573 ( SUSE ): 4.4 CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:N/I:N/A:H * CVE-2023-32573 ( NVD ): 6.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H * CVE-2023-32573 ( NVD ): 6.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H * CVE-2023-32763 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H * CVE-2023-32763 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2023-34410 ( SUSE ): 6.2 CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N * CVE-2023-34410 ( NVD ): 5.3 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N * CVE-2023-34410 ( NVD ): 5.3 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N * CVE-2023-37369 ( SUSE ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2023-37369 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2023-38197 ( SUSE ): 5.5 CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H * CVE-2023-38197 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2025-5455 ( SUSE ): 5.3 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L * CVE-2025-5455 ( NVD ): 8.4 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:A/VC:N/VI:H/VA:H/SC:N/SI:H/SA:H/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:U/V:X/RE:M/U:Clear Affected Products: * SUSE Linux Enterprise Server 12 SP5 * SUSE LinuxEnterprise Server 12 SP5 LTSS Extended Security * SUSE Linux Enterprise Server for SAP Applications 12 SP5 An update that solves seven vulnerabilities and has five security fixes can now be installed. ## Description: This update for libqt4 fixes the following issues: * CVE-2021-45930: Fixed out-of-bounds write leading to DoS (bsc#1196654) * CVE-2023-32573: Fixed missing initialization of QtSvg QSvgFont m_unitsPerEm (bsc#1211298) * CVE-2023-32763: Fixed buffer overflow on QTextLayout during rendering of an SVG file with an image inside (bsc#1211798) * CVE-2023-34410: Fixed certificate validation not always considering whether the root of a chain is a configured CA certificate (bsc#1211994) * CVE-2023-37369: Fixed buffer overflow in QXmlStreamReader (bsc#1214327) * CVE-2023-38197: Fixed infinite loops in QXmlStreamReader (bsc#1213326) * CVE-2025-5455: Fixed denial of service when qDecodeDataUrl() is called with malformed data and assertions are enabled (bsc#1245609) ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Enterprise Server 12 SP5 LTSS Extended Security zypper in -t patch SUSE-SLE-SERVER-12-SP5-LTSS-EXTENDED-SECURITY-2025-2968=1 ## Package List: * SUSE Linux Enterprise Server 12 SP5 LTSS Extended Security (x86_64) * libqt4-devel-doc-debugsource-4.8.7-8.22.1 * libqt4-sql-debuginfo-4.8.7-8.22.1 * libqt4-sql-plugins-debugsource-4.8.7-8.22.1 * libqt4-devel-debuginfo-4.8.7-8.22.1 * libqt4-4.8.7-8.22.1 * libqt4-devel-doc-4.8.7-8.22.1 * libqt4-sql-4.8.7-8.22.1 * libqt4-sql-sqlite-4.8.7-8.22.1 * libqt4-32bit-4.8.7-8.22.1 * libqt4-qt3support-4.8.7-8.22.1 * libqt4-x11-debuginfo-32bit-4.8.7-8.22.1 * libqt4-x11-debuginfo-4.8.7-8.22.1 * libqt4-sql-sqlite-debuginfo-4.8.7-8.22.1 * libqt4-qt3support-32bit-4.8.7-8.22.1 *libqt4-qt3support-debuginfo-4.8.7-8.22.1 * qt4-x11-tools-4.8.7-8.22.1 * libqt4-devel-doc-debuginfo-4.8.7-8.22.1 * libqt4-qt3support-debuginfo-32bit-4.8.7-8.22.1 * libqt4-sql-debuginfo-32bit-4.8.7-8.22.1 * libqt4-sql-mysql-4.8.7-8.22.1 * libqt4-x11-4.8.7-8.22.1 * libqt4-devel-4.8.7-8.22.1 * libqt4-sql-mysql-debuginfo-4.8.7-8.22.1 * qt4-x11-tools-debuginfo-4.8.7-8.22.1 * libqt4-debugsource-4.8.7-8.22.1 * libqt4-x11-32bit-4.8.7-8.22.1 * libqt4-debuginfo-4.8.7-8.22.1 * libqt4-debuginfo-32bit-4.8.7-8.22.1 * libqt4-private-headers-devel-4.8.7-8.22.1 * libqt4-sql-32bit-4.8.7-8.22.1 * SUSE Linux Enterprise Server 12 SP5 LTSS Extended Security (noarch) * libqt4-devel-doc-data-4.8.7-8.22.1 ## References: * https://www.suse.com/security/cve/CVE-2021-45930.html * https://www.suse.com/security/cve/CVE-2023-32573.html * https://www.suse.com/security/cve/CVE-2023-32763.html * https://www.suse.com/security/cve/CVE-2023-34410.html * https://www.suse.com/security/cve/CVE-2023-37369.html * https://www.suse.com/security/cve/CVE-2023-38197.html * https://www.suse.com/security/cve/CVE-2025-5455.html * https://bugzilla.suse.com/show_bug.cgi?id=1196654 * https://bugzilla.suse.com/show_bug.cgi?id=1211298 * https://bugzilla.suse.com/show_bug.cgi?id=1211798 * https://bugzilla.suse.com/show_bug.cgi?id=1211994 * https://bugzilla.suse.com/show_bug.cgi?id=1213326 * https://bugzilla.suse.com/show_bug.cgi?id=1214327 * https://bugzilla.suse.com/show_bug.cgi?id=1245609 * https://bugzilla.suse.com/show_bug.cgi?id=357727 * https://bugzilla.suse.com/show_bug.cgi?id=552218 * https://bugzilla.suse.com/show_bug.cgi?id=656144 * https://bugzilla.suse.com/show_bug.cgi?id=717127 * https://bugzilla.suse.com/show_bug.cgi?id=875470 . Ubuntu reveals significant patches for libgtk3 tackling various vulnerabilities, fortifying system integrity.. Linux Updates, SUSE Vulnerabilities, libqt4 Security Patches. . Severity: Important. LinuxSecurity.com Team
* bsc#1196654 * bsc#1211298 * bsc#1211798 * bsc#1211994 * bsc#1213326 . # Security update for libqt4 Announcement ID: SUSE-SU-2023:4622-1 Rating: important References: * bsc#1196654 * bsc#1211298 * bsc#1211798 * bsc#1211994 * bsc#1213326 * bsc#1214327 Cross-References: * CVE-2021-45930 * CVE-2023-32573 * CVE-2023-32763 * CVE-2023-34410 * CVE-2023-37369 * CVE-2023-38197 CVSS scores: * CVE-2021-45930 ( SUSE ): 5.5 CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H * CVE-2021-45930 ( NVD ): 5.5 CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H * CVE-2023-32573 ( SUSE ): 4.4 CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:N/I:N/A:H * CVE-2023-32573 ( NVD ): 6.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H * CVE-2023-32763 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H * CVE-2023-32763 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2023-34410 ( SUSE ): 6.2 CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N * CVE-2023-34410 ( NVD ): 5.3 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N * CVE-2023-37369 ( SUSE ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2023-37369 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2023-38197 ( SUSE ): 5.5 CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H * CVE-2023-38197 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H Affected Products: * SUSE Linux Enterprise High Performance Computing 12 SP5 * SUSE Linux Enterprise Server 12 SP5 * SUSE Linux Enterprise Server for SAP Applications 12 SP5 * SUSE Linux Enterprise Software Development Kit 12 SP5 * SUSE Linux Enterprise Workstation Extension 12 12-SP5 An update that solves six vulnerabilities can now be installed. ## Description: This update for libqt4 fixes the following issues: * CVE-2021-45930: Fix out of-bounds write when parsing path nodes (bsc#1196654). * CVE-2023-32573: Fix missing initialization of QSvgFont unitsPerEm (bsc#1211298). * CVE-2023-32763: Fix potential buffer when rendering aSVG file with an image inside (bsc#1211798). * CVE-2023-34410: Fix missing sync of disablement of loading root certificates in qsslsocketprivate (bsc#1211994). * CVE-2023-37369: Fix buffer overflow in QXmlStreamReader (bsc#1214327). * CVE-2023-38197: Fix infinite loops in QXmlStreamReader (bsc#1213326). ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Enterprise Workstation Extension 12 12-SP5 zypper in -t patch SUSE-SLE-WE-12-SP5-2023-4622=1 * SUSE Linux Enterprise Software Development Kit 12 SP5 zypper in -t patch SUSE-SLE-SDK-12-SP5-2023-4622=1 * SUSE Linux Enterprise High Performance Computing 12 SP5 zypper in -t patch SUSE-SLE-SERVER-12-SP5-2023-4622=1 * SUSE Linux Enterprise Server 12 SP5 zypper in -t patch SUSE-SLE-SERVER-12-SP5-2023-4622=1 * SUSE Linux Enterprise Server for SAP Applications 12 SP5 zypper in -t patch SUSE-SLE-SERVER-12-SP5-2023-4622=1 ## Package List: * SUSE Linux Enterprise Workstation Extension 12 12-SP5 (x86_64) * libqt4-sql-plugins-debugsource-4.8.7-8.19.1 * libqt4-sql-postgresql-4.8.7-8.19.1 * libqt4-sql-postgresql-debuginfo-32bit-4.8.7-8.19.1 * libqt4-sql-unixODBC-4.8.7-8.19.1 * libqt4-sql-unixODBC-debuginfo-4.8.7-8.19.1 * libqt4-sql-unixODBC-debuginfo-32bit-4.8.7-8.19.1 * libqt4-sql-sqlite-32bit-4.8.7-8.19.1 * libqt4-debuginfo-32bit-4.8.7-8.19.1 * libqt4-sql-mysql-32bit-4.8.7-8.19.1 * libqt4-sql-postgresql-32bit-4.8.7-8.19.1 * libqt4-debugsource-4.8.7-8.19.1 * libqt4-sql-unixODBC-32bit-4.8.7-8.19.1 * libqt4-sql-mysql-debuginfo-32bit-4.8.7-8.19.1 * libqt4-sql-sqlite-debuginfo-32bit-4.8.7-8.19.1 * libqt4-sql-postgresql-debuginfo-4.8.7-8.19.1 * SUSE Linux Enterprise Software Development Kit 12 SP5 (aarch64 ppc64le s390x x86_64) * libqt4-sql-plugins-debugsource-4.8.7-8.19.1 *libqt4-sql-postgresql-4.8.7-8.19.1 * libqt4-sql-unixODBC-4.8.7-8.19.1 * libqt4-sql-unixODBC-debuginfo-4.8.7-8.19.1 * libqt4-devel-debuginfo-4.8.7-8.19.1 * libqt4-devel-doc-4.8.7-8.19.1 * libqt4-linguist-4.8.7-8.19.1 * libqt4-devel-doc-debuginfo-4.8.7-8.19.1 * libqt4-private-headers-devel-4.8.7-8.19.1 * libqt4-debugsource-4.8.7-8.19.1 * libqt4-linguist-debuginfo-4.8.7-8.19.1 * libqt4-debuginfo-4.8.7-8.19.1 * libqt4-devel-doc-debugsource-4.8.7-8.19.1 * libqt4-sql-postgresql-debuginfo-4.8.7-8.19.1 * libqt4-devel-4.8.7-8.19.1 * SUSE Linux Enterprise Software Development Kit 12 SP5 (noarch) * libqt4-devel-doc-data-4.8.7-8.19.1 * SUSE Linux Enterprise Software Development Kit 12 SP5 (s390x x86_64) * libqt4-sql-unixODBC-debuginfo-32bit-4.8.7-8.19.1 * libqt4-sql-postgresql-debuginfo-32bit-4.8.7-8.19.1 * libqt4-sql-unixODBC-32bit-4.8.7-8.19.1 * libqt4-sql-postgresql-32bit-4.8.7-8.19.1 * SUSE Linux Enterprise High Performance Computing 12 SP5 (aarch64 x86_64) * libqt4-sql-plugins-debugsource-4.8.7-8.19.1 * libqt4-4.8.7-8.19.1 * libqt4-qt3support-debuginfo-4.8.7-8.19.1 * libqt4-sql-mysql-debuginfo-4.8.7-8.19.1 * libqt4-sql-debuginfo-4.8.7-8.19.1 * libqt4-x11-4.8.7-8.19.1 * libqt4-sql-mysql-4.8.7-8.19.1 * qt4-x11-tools-debuginfo-4.8.7-8.19.1 * libqt4-x11-debuginfo-4.8.7-8.19.1 * libqt4-devel-doc-debuginfo-4.8.7-8.19.1 * libqt4-sql-sqlite-debuginfo-4.8.7-8.19.1 * libqt4-debugsource-4.8.7-8.19.1 * libqt4-sql-4.8.7-8.19.1 * libqt4-debuginfo-4.8.7-8.19.1 * libqt4-devel-doc-debugsource-4.8.7-8.19.1 * libqt4-qt3support-4.8.7-8.19.1 * libqt4-sql-sqlite-4.8.7-8.19.1 * qt4-x11-tools-4.8.7-8.19.1 * SUSE Linux Enterprise High Performance Computing 12 SP5 (x86_64) * libqt4-32bit-4.8.7-8.19.1 * libqt4-qt3support-32bit-4.8.7-8.19.1 * libqt4-sql-32bit-4.8.7-8.19.1 * libqt4-x11-debuginfo-32bit-4.8.7-8.19.1 * libqt4-debuginfo-32bit-4.8.7-8.19.1 *libqt4-sql-debuginfo-32bit-4.8.7-8.19.1 * libqt4-qt3support-debuginfo-32bit-4.8.7-8.19.1 * libqt4-x11-32bit-4.8.7-8.19.1 * SUSE Linux Enterprise Server 12 SP5 (aarch64 ppc64le s390x x86_64) * libqt4-sql-plugins-debugsource-4.8.7-8.19.1 * libqt4-4.8.7-8.19.1 * libqt4-qt3support-debuginfo-4.8.7-8.19.1 * libqt4-sql-mysql-debuginfo-4.8.7-8.19.1 * libqt4-sql-debuginfo-4.8.7-8.19.1 * libqt4-x11-4.8.7-8.19.1 * libqt4-sql-mysql-4.8.7-8.19.1 * qt4-x11-tools-debuginfo-4.8.7-8.19.1 * libqt4-x11-debuginfo-4.8.7-8.19.1 * libqt4-devel-doc-debuginfo-4.8.7-8.19.1 * libqt4-sql-sqlite-debuginfo-4.8.7-8.19.1 * libqt4-debugsource-4.8.7-8.19.1 * libqt4-sql-4.8.7-8.19.1 * libqt4-debuginfo-4.8.7-8.19.1 * libqt4-devel-doc-debugsource-4.8.7-8.19.1 * libqt4-qt3support-4.8.7-8.19.1 * libqt4-sql-sqlite-4.8.7-8.19.1 * qt4-x11-tools-4.8.7-8.19.1 * SUSE Linux Enterprise Server 12 SP5 (s390x x86_64) * libqt4-32bit-4.8.7-8.19.1 * libqt4-qt3support-32bit-4.8.7-8.19.1 * libqt4-sql-32bit-4.8.7-8.19.1 * libqt4-x11-debuginfo-32bit-4.8.7-8.19.1 * libqt4-debuginfo-32bit-4.8.7-8.19.1 * libqt4-sql-debuginfo-32bit-4.8.7-8.19.1 * libqt4-qt3support-debuginfo-32bit-4.8.7-8.19.1 * libqt4-x11-32bit-4.8.7-8.19.1 * SUSE Linux Enterprise Server for SAP Applications 12 SP5 (ppc64le x86_64) * libqt4-sql-plugins-debugsource-4.8.7-8.19.1 * libqt4-4.8.7-8.19.1 * libqt4-qt3support-debuginfo-4.8.7-8.19.1 * libqt4-sql-mysql-debuginfo-4.8.7-8.19.1 * libqt4-sql-debuginfo-4.8.7-8.19.1 * libqt4-x11-4.8.7-8.19.1 * libqt4-sql-mysql-4.8.7-8.19.1 * qt4-x11-tools-debuginfo-4.8.7-8.19.1 * libqt4-x11-debuginfo-4.8.7-8.19.1 * libqt4-devel-doc-debuginfo-4.8.7-8.19.1 * libqt4-sql-sqlite-debuginfo-4.8.7-8.19.1 * libqt4-debugsource-4.8.7-8.19.1 * libqt4-sql-4.8.7-8.19.1 * libqt4-debuginfo-4.8.7-8.19.1 * libqt4-devel-doc-debugsource-4.8.7-8.19.1 * libqt4-qt3support-4.8.7-8.19.1 *libqt4-sql-sqlite-4.8.7-8.19.1 * qt4-x11-tools-4.8.7-8.19.1 * SUSE Linux Enterprise Server for SAP Applications 12 SP5 (x86_64) * libqt4-32bit-4.8.7-8.19.1 * libqt4-qt3support-32bit-4.8.7-8.19.1 * libqt4-sql-32bit-4.8.7-8.19.1 * libqt4-x11-debuginfo-32bit-4.8.7-8.19.1 * libqt4-debuginfo-32bit-4.8.7-8.19.1 * libqt4-sql-debuginfo-32bit-4.8.7-8.19.1 * libqt4-qt3support-debuginfo-32bit-4.8.7-8.19.1 * libqt4-x11-32bit-4.8.7-8.19.1 ## References: * https://www.suse.com/security/cve/CVE-2021-45930.html * https://www.suse.com/security/cve/CVE-2023-32573.html * https://www.suse.com/security/cve/CVE-2023-32763.html * https://www.suse.com/security/cve/CVE-2023-34410.html * https://www.suse.com/security/cve/CVE-2023-37369.html * https://www.suse.com/security/cve/CVE-2023-38197.html * https://bugzilla.suse.com/show_bug.cgi?id=1196654 * https://bugzilla.suse.com/show_bug.cgi?id=1211298 * https://bugzilla.suse.com/show_bug.cgi?id=1211798 * https://bugzilla.suse.com/show_bug.cgi?id=1211994 * https://bugzilla.suse.com/show_bug.cgi?id=1213326 * https://bugzilla.suse.com/show_bug.cgi?id=1214327 . Crucial SUSE security notice regarding severe libqt4 problems alongside six identified vulnerabilities. Ensure you implement the latest patches immediately.. SUSE Security Advisory, libqt4 Update, Security Fixes, Important Updates. . Severity: Critical. LinuxSecurity.com Team
An update that fixes two vulnerabilities is now available. . SUSE Security Update: Security update for libqt4 ______________________________________________________________________________ Announcement ID: SUSE-SU-2021:4155-1 Rating: important References: #1176315 #1184783 Cross-References: CVE-2020-17507 CVE-2021-3481 CVSS scores: CVE-2020-17507 (NVD) : 5.3 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L CVE-2020-17507 (SUSE): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N CVE-2021-3481 (SUSE): 5.4 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:L Affected Products: SUSE Linux Enterprise Workstation Extension 12-SP5 SUSE Linux Enterprise Software Development Kit 12-SP5 SUSE Linux Enterprise Server 12-SP5 ______________________________________________________________________________ An update that fixes two vulnerabilities is now available. Description: This update for libqt4 fixes the following issues: - CVE-2021-3481: Fixed out of bounds read in QRadialFetchSimd() from crafted svg file (bsc#1184783). - CVE-2020-17507: Fixed buffer over-read in read_xbm_body() (bsc#1176315). Patch Instructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - SUSE Linux Enterprise Workstation Extension 12-SP5: zypper in -t patch SUSE-SLE-WE-12-SP5-2021-4155=1 - SUSE Linux Enterprise Software Development Kit 12-SP5: zypper in -t patch SUSE-SLE-SDK-12-SP5-2021-4155=1 - SUSE Linux Enterprise Server 12-SP5: zypper in -t patch SUSE-SLE-SERVER-12-SP5-2021-4155=1 Package List: - SUSE Linux Enterprise Workstation Extension 12-SP5 (x86_64): libqt4-debuginfo-32bit-4.8.7-8.16.1 libqt4-debugsource-4.8.7-8.16.1 libqt4-sql-mysql-32bit-4.8.7-8.16.1 libqt4-sql-mysql-debuginfo-32bit-4.8.7-8.16.1 libqt4-sql-plugins-debugsource-4.8.7-8.16.1 libqt4-sql-postgresql-32bit-4.8.7-8.16.1 libqt4-sql-postgresql-4.8.7-8.16.1 libqt4-sql-postgresql-debuginfo-32bit-4.8.7-8.16.1 libqt4-sql-postgresql-debuginfo-4.8.7-8.16.1 libqt4-sql-sqlite-32bit-4.8.7-8.16.1 libqt4-sql-sqlite-debuginfo-32bit-4.8.7-8.16.1 libqt4-sql-unixODBC-32bit-4.8.7-8.16.1 libqt4-sql-unixODBC-4.8.7-8.16.1 libqt4-sql-unixODBC-debuginfo-32bit-4.8.7-8.16.1 libqt4-sql-unixODBC-debuginfo-4.8.7-8.16.1 - SUSE Linux Enterprise Software Development Kit 12-SP5 (aarch64 ppc64le s390x x86_64): libqt4-debuginfo-4.8.7-8.16.1 libqt4-debugsource-4.8.7-8.16.1 libqt4-devel-4.8.7-8.16.1 libqt4-devel-debuginfo-4.8.7-8.16.1 libqt4-devel-doc-4.8.7-8.16.2 libqt4-devel-doc-debuginfo-4.8.7-8.16.2 libqt4-devel-doc-debugsource-4.8.7-8.16.2 libqt4-linguist-4.8.7-8.16.1 libqt4-linguist-debuginfo-4.8.7-8.16.1 libqt4-private-headers-devel-4.8.7-8.16.1 libqt4-sql-plugins-debugsource-4.8.7-8.16.1 libqt4-sql-postgresql-4.8.7-8.16.1 libqt4-sql-postgresql-debuginfo-4.8.7-8.16.1 libqt4-sql-unixODBC-4.8.7-8.16.1 libqt4-sql-unixODBC-debuginfo-4.8.7-8.16.1 - SUSE Linux Enterprise Software Development Kit 12-SP5 (s390x x86_64): libqt4-sql-postgresql-32bit-4.8.7-8.16.1 libqt4-sql-postgresql-debuginfo-32bit-4.8.7-8.16.1 libqt4-sql-unixODBC-32bit-4.8.7-8.16.1 libqt4-sql-unixODBC-debuginfo-32bit-4.8.7-8.16.1 - SUSE Linux Enterprise Software Development Kit 12-SP5 (noarch): libqt4-devel-doc-data-4.8.7-8.16.2 - SUSE Linux Enterprise Server 12-SP5 (aarch64 ppc64le s390x x86_64): libqt4-4.8.7-8.16.1 libqt4-debuginfo-4.8.7-8.16.1 libqt4-debugsource-4.8.7-8.16.1 libqt4-devel-doc-debuginfo-4.8.7-8.16.2 libqt4-devel-doc-debugsource-4.8.7-8.16.2 libqt4-qt3support-4.8.7-8.16.1 libqt4-qt3support-debuginfo-4.8.7-8.16.1 libqt4-sql-4.8.7-8.16.1 libqt4-sql-debuginfo-4.8.7-8.16.1 libqt4-sql-mysql-4.8.7-8.16.1 libqt4-sql-mysql-debuginfo-4.8.7-8.16.1 libqt4-sql-plugins-debugsource-4.8.7-8.16.1 libqt4-sql-sqlite-4.8.7-8.16.1 libqt4-sql-sqlite-debuginfo-4.8.7-8.16.1 libqt4-x11-4.8.7-8.16.1 libqt4-x11-debuginfo-4.8.7-8.16.1 qt4-x11-tools-4.8.7-8.16.2 qt4-x11-tools-debuginfo-4.8.7-8.16.2 - SUSE Linux Enterprise Server 12-SP5 (s390x x86_64): libqt4-32bit-4.8.7-8.16.1 libqt4-debuginfo-32bit-4.8.7-8.16.1 libqt4-qt3support-32bit-4.8.7-8.16.1 libqt4-qt3support-debuginfo-32bit-4.8.7-8.16.1 libqt4-sql-32bit-4.8.7-8.16.1 libqt4-sql-debuginfo-32bit-4.8.7-8.16.1 libqt4-x11-32bit-4.8.7-8.16.1 libqt4-x11-debuginfo-32bit-4.8.7-8.16.1 References: https://www.suse.com/security/cve/CVE-2020-17507.html https://www.suse.com/security/cve/CVE-2021-3481.html https://bugzilla.suse.com/1176315 https://bugzilla.suse.com/1184783 . The latest patch addresses two significant vulnerabilities found in libqt4 on SUSE distributions. Follow these procedures to apply the update effectively.. libqt4 Security Update, SUSE System Patching, Out Of Bounds Fixes. . Severity: Important. LinuxSecurity.com Team
An update that solves four vulnerabilities and has one errata is now available.. openSUSE Security Update: Security update for libqt4 ______________________________________________________________________________ Announcement ID: openSUSE-SU-2020:1530-1 Rating: moderate References: #1118595 #1118596 #1118599 #1121214 #1176315 Cross-References: CVE-2018-15518 CVE-2018-19869 CVE-2018-19873 CVE-2020-17507 Affected Products: openSUSE Backports SLE-15-SP2 ______________________________________________________________________________ An update that solves four vulnerabilities and has one errata is now available. Description: This update for libqt4 fixes the following issues: * Fix buffer over-read in read_xbm_body (boo#1176315, CVE-2020-17507) * Fix "double free or corruption" in QXmlStreamReader (boo#1118595, CVE-2018-15518) * Fix QBmpHandler segfault on malformed BMP file boo#1118596, CVE-2018-19873) * Fix crash when parsing malformed url reference (boo#1118599, CVE-2018-19869) This update was imported from the openSUSE:Leap:15.1:Update update project. This update was imported from the openSUSE:Leap:15.2:Update update project. Patch Instructions: To install this openSUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Backports SLE-15-SP2: zypper in -t patch openSUSE-2020-1530=1 Package List: - openSUSE Backports SLE-15-SP2 (aarch64 ppc64le s390x x86_64): libqt4-4.8.7-bp152.4.3.1 libqt4-devel-4.8.7-bp152.4.3.1 libqt4-devel-doc-4.8.7-bp152.4.3.1 libqt4-devel-doc-debuginfo-4.8.7-bp152.4.3.1 libqt4-devel-doc-debugsource-4.8.7-bp152.4.3.1 libqt4-linguist-4.8.7-bp152.4.3.1 libqt4-private-headers-devel-4.8.7-bp152.4.3.1 libqt4-qt3support-4.8.7-bp152.4.3.1 libqt4-sql-4.8.7-bp152.4.3.1 libqt4-sql-plugins-debugsource-4.8.7-bp152.4.3.1 libqt4-sql-postgresql-4.8.7-bp152.4.3.1 libqt4-sql-postgresql-debuginfo-4.8.7-bp152.4.3.1 libqt4-sql-sqlite-4.8.7-bp152.4.3.1 libqt4-sql-unixODBC-4.8.7-bp152.4.3.1 libqt4-sql-unixODBC-debuginfo-4.8.7-bp152.4.3.1 libqt4-x11-4.8.7-bp152.4.3.1 qt4-x11-tools-4.8.7-bp152.4.3.1 qt4-x11-tools-debuginfo-4.8.7-bp152.4.3.1 - openSUSE Backports SLE-15-SP2 (aarch64_ilp32): libqt4-64bit-4.8.7-bp152.4.3.1 libqt4-devel-64bit-4.8.7-bp152.4.3.1 libqt4-qt3support-64bit-4.8.7-bp152.4.3.1 libqt4-sql-64bit-4.8.7-bp152.4.3.1 libqt4-sql-postgresql-64bit-4.8.7-bp152.4.3.1 libqt4-sql-postgresql-64bit-debuginfo-4.8.7-bp152.4.3.1 libqt4-sql-sqlite-64bit-4.8.7-bp152.4.3.1 libqt4-sql-unixODBC-64bit-4.8.7-bp152.4.3.1 libqt4-sql-unixODBC-64bit-debuginfo-4.8.7-bp152.4.3.1 libqt4-x11-64bit-4.8.7-bp152.4.3.1 - openSUSE Backports SLE-15-SP2 (noarch): libqt4-devel-doc-data-4.8.7-bp152.4.3.1 References: https://www.suse.com/security/cve/CVE-2018-15518.html https://www.suse.com/security/cve/CVE-2018-19869.html https://www.suse.com/security/cve/CVE-2018-19873.html https://www.suse.com/security/cve/CVE-2020-17507.html https://bugzilla.suse.com/1118595 https://bugzilla.suse.com/1118596 https://bugzilla.suse.com/1118599 https://bugzilla.suse.com/1121214 https://bugzilla.suse.com/1176315 -- . A new patch has been released to mitigate several security flaws in libqt4 for openSUSE clientele, presented through a formal advisory.. openSUSE Security, libqt4 Update, moderate Security Fix, openSUSE Vulnerabilities. . LinuxSecurity.com Team
An update that solves four vulnerabilities and has one errata is now available.. openSUSE Security Update: Security update for libqt4 ______________________________________________________________________________ Announcement ID: openSUSE-SU-2020:1501-1 Rating: moderate References: #1118595 #1118596 #1118599 #1121214 #1176315 Cross-References: CVE-2018-15518 CVE-2018-19869 CVE-2018-19873 CVE-2020-17507 Affected Products: openSUSE Leap 15.2 ______________________________________________________________________________ An update that solves four vulnerabilities and has one errata is now available. Description: This update for libqt4 fixes the following issues: * Fix buffer over-read in read_xbm_body (boo#1176315, CVE-2020-17507) * Fix "double free or corruption" in QXmlStreamReader (boo#1118595, CVE-2018-15518) * Fix QBmpHandler segfault on malformed BMP file boo#1118596, CVE-2018-19873) * Fix crash when parsing malformed url reference (boo#1118599, CVE-2018-19869) This update was imported from the openSUSE:Leap:15.1:Update update project. Patch Instructions: To install this openSUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Leap 15.2: zypper in -t patch openSUSE-2020-1501=1 Package List: - openSUSE Leap 15.2 (i586 x86_64): libqt4-4.8.7-lp152.10.3.1 libqt4-debuginfo-4.8.7-lp152.10.3.1 libqt4-debugsource-4.8.7-lp152.10.3.1 libqt4-devel-4.8.7-lp152.10.3.1 libqt4-devel-debuginfo-4.8.7-lp152.10.3.1 libqt4-linguist-4.8.7-lp152.10.3.1 libqt4-linguist-debuginfo-4.8.7-lp152.10.3.1 libqt4-private-headers-devel-4.8.7-lp152.10.3.1 libqt4-qt3support-4.8.7-lp152.10.3.1 libqt4-qt3support-debuginfo-4.8.7-lp152.10.3.1 libqt4-sql-4.8.7-lp152.10.3.1 libqt4-sql-debuginfo-4.8.7-lp152.10.3.1 libqt4-sql-sqlite-4.8.7-lp152.10.3.1 libqt4-sql-sqlite-debuginfo-4.8.7-lp152.10.3.1 libqt4-x11-4.8.7-lp152.10.3.1 libqt4-x11-debuginfo-4.8.7-lp152.10.3.1 - openSUSE Leap 15.2 (x86_64): libqt4-32bit-4.8.7-lp152.10.3.1 libqt4-32bit-debuginfo-4.8.7-lp152.10.3.1 libqt4-devel-32bit-4.8.7-lp152.10.3.1 libqt4-devel-32bit-debuginfo-4.8.7-lp152.10.3.1 libqt4-devel-doc-4.8.7-lp152.10.3.1 libqt4-devel-doc-debuginfo-4.8.7-lp152.10.3.1 libqt4-devel-doc-debugsource-4.8.7-lp152.10.3.1 libqt4-qt3support-32bit-4.8.7-lp152.10.3.1 libqt4-qt3support-32bit-debuginfo-4.8.7-lp152.10.3.1 libqt4-sql-32bit-4.8.7-lp152.10.3.1 libqt4-sql-32bit-debuginfo-4.8.7-lp152.10.3.1 libqt4-sql-plugins-debugsource-4.8.7-lp152.10.3.1 libqt4-sql-postgresql-4.8.7-lp152.10.3.1 libqt4-sql-postgresql-debuginfo-4.8.7-lp152.10.3.1 libqt4-sql-sqlite-32bit-4.8.7-lp152.10.3.1 libqt4-sql-sqlite-32bit-debuginfo-4.8.7-lp152.10.3.1 libqt4-sql-unixODBC-4.8.7-lp152.10.3.1 libqt4-sql-unixODBC-debuginfo-4.8.7-lp152.10.3.1 libqt4-x11-32bit-4.8.7-lp152.10.3.1 libqt4-x11-32bit-debuginfo-4.8.7-lp152.10.3.1 qt4-x11-tools-4.8.7-lp152.10.3.1 qt4-x11-tools-debuginfo-4.8.7-lp152.10.3.1 - openSUSE Leap 15.2 (noarch): libqt4-devel-doc-data-4.8.7-lp152.10.3.1 References: https://www.suse.com/security/cve/CVE-2018-15518.html https://www.suse.com/security/cve/CVE-2018-19869.html https://www.suse.com/security/cve/CVE-2018-19873.html https://www.suse.com/security/cve/CVE-2020-17507.html https://bugzilla.suse.com/1118595 https://bugzilla.suse.com/1118596 https://bugzilla.suse.com/1118599 https://bugzilla.suse.com/1121214 https://bugzilla.suse.com/1176315 -- . A newly released security patch for libqt4 resolves various vulnerabilities in openSUSE, boosting overall system security and reliability.. openSUSE security update, libqt4 vulnerabilities,software patching, system security updates. . LinuxSecurity.com Team
An update that solves four vulnerabilities and has one errata is now available.. openSUSE Security Update: Security update for libqt4 ______________________________________________________________________________ Announcement ID: openSUSE-SU-2020:1500-1 Rating: moderate References: #1118595 #1118596 #1118599 #1121214 #1176315 Cross-References: CVE-2018-15518 CVE-2018-19869 CVE-2018-19873 CVE-2020-17507 Affected Products: openSUSE Backports SLE-15-SP1 ______________________________________________________________________________ An update that solves four vulnerabilities and has one errata is now available. Description: This update for libqt4 fixes the following issues: * Fix buffer over-read in read_xbm_body (boo#1176315, CVE-2020-17507) * Fix "double free or corruption" in QXmlStreamReader (boo#1118595, CVE-2018-15518) * Fix QBmpHandler segfault on malformed BMP file boo#1118596, CVE-2018-19873) * Fix crash when parsing malformed url reference (boo#1118599, CVE-2018-19869) This update was imported from the openSUSE:Leap:15.1:Update update project. Patch Instructions: To install this openSUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Backports SLE-15-SP1: zypper in -t patch openSUSE-2020-1500=1 Package List: - openSUSE Backports SLE-15-SP1 (aarch64 ppc64le s390x x86_64): libqt4-4.8.7-bp151.4.3.1 libqt4-devel-4.8.7-bp151.4.3.1 libqt4-devel-doc-4.8.7-bp151.4.3.1 libqt4-devel-doc-debuginfo-4.8.7-bp151.4.3.1 libqt4-devel-doc-debugsource-4.8.7-bp151.4.3.1 libqt4-linguist-4.8.7-bp151.4.3.1 libqt4-private-headers-devel-4.8.7-bp151.4.3.1 libqt4-qt3support-4.8.7-bp151.4.3.1 libqt4-sql-4.8.7-bp151.4.3.1 libqt4-sql-plugins-debugsource-4.8.7-bp151.4.3.1 libqt4-sql-postgresql-4.8.7-bp151.4.3.1 libqt4-sql-postgresql-debuginfo-4.8.7-bp151.4.3.1 libqt4-sql-sqlite-4.8.7-bp151.4.3.1 libqt4-sql-unixODBC-4.8.7-bp151.4.3.1 libqt4-sql-unixODBC-debuginfo-4.8.7-bp151.4.3.1 libqt4-x11-4.8.7-bp151.4.3.1 qt4-x11-tools-4.8.7-bp151.4.3.1 qt4-x11-tools-debuginfo-4.8.7-bp151.4.3.1 - openSUSE Backports SLE-15-SP1 (aarch64_ilp32): libqt4-64bit-4.8.7-bp151.4.3.1 libqt4-devel-64bit-4.8.7-bp151.4.3.1 libqt4-qt3support-64bit-4.8.7-bp151.4.3.1 libqt4-sql-64bit-4.8.7-bp151.4.3.1 libqt4-sql-postgresql-64bit-4.8.7-bp151.4.3.1 libqt4-sql-postgresql-64bit-debuginfo-4.8.7-bp151.4.3.1 libqt4-sql-sqlite-64bit-4.8.7-bp151.4.3.1 libqt4-sql-unixODBC-64bit-4.8.7-bp151.4.3.1 libqt4-sql-unixODBC-64bit-debuginfo-4.8.7-bp151.4.3.1 libqt4-x11-64bit-4.8.7-bp151.4.3.1 - openSUSE Backports SLE-15-SP1 (noarch): libqt4-devel-doc-data-4.8.7-bp151.4.3.1 References: https://www.suse.com/security/cve/CVE-2018-15518.html https://www.suse.com/security/cve/CVE-2018-19869.html https://www.suse.com/security/cve/CVE-2018-19873.html https://www.suse.com/security/cve/CVE-2020-17507.html https://bugzilla.suse.com/1118595 https://bugzilla.suse.com/1118596 https://bugzilla.suse.com/1118599 https://bugzilla.suse.com/1121214 https://bugzilla.suse.com/1176315 -- . This patch resolves three vulnerabilities in libqt5, focusing on potential memory leaks and heap corruption. Discover the steps to implement it.. openSUSE Security Update, libqt4 buffer over-read fix, moderate severity patch. . Severity: Important. LinuxSecurity.com Team
An update that solves three vulnerabilities and has one errata is now available. . SUSE Security Update: Security update for libqt4 ______________________________________________________________________________ Announcement ID: SUSE-SU-2020:1021-1 Rating: moderate References: #1118595 #1118596 #1118599 #1121214 Cross-References: CVE-2018-15518 CVE-2018-19869 CVE-2018-19873 Affected Products: SUSE Linux Enterprise Workstation Extension 12-SP5 SUSE Linux Enterprise Workstation Extension 12-SP4 SUSE Linux Enterprise Software Development Kit 12-SP5 SUSE Linux Enterprise Software Development Kit 12-SP4 SUSE Linux Enterprise Server 12-SP5 SUSE Linux Enterprise Server 12-SP4 ______________________________________________________________________________ An update that solves three vulnerabilities and has one errata is now available. Description: This update for libqt4 fixes the following issues: - CVE-2018-15518: Fixed a double free in QXmlStreamReader (bsc#1118595) - CVE-2018-19873: Fixed a segmantation fault via a malformed BMP file (bsc#1118596). - CVE-2018-19869: Fixed an improper checking which might lead to a crach via a malformed url reference (bsc#1118599). - Added stricter toplevel asm parsing by dropping volatile qualification that has no effect (bsc#1121214). Patch Instructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - SUSE Linux Enterprise Workstation Extension 12-SP5: zypper in -t patch SUSE-SLE-WE-12-SP5-2020-1021=1 - SUSE Linux Enterprise Workstation Extension 12-SP4: zypper in -t patch SUSE-SLE-WE-12-SP4-2020-1021=1 - SUSE Linux Enterprise SoftwareDevelopment Kit 12-SP5: zypper in -t patch SUSE-SLE-SDK-12-SP5-2020-1021=1 - SUSE Linux Enterprise Software Development Kit 12-SP4: zypper in -t patch SUSE-SLE-SDK-12-SP4-2020-1021=1 - SUSE Linux Enterprise Server 12-SP5: zypper in -t patch SUSE-SLE-SERVER-12-SP5-2020-1021=1 - SUSE Linux Enterprise Server 12-SP4: zypper in -t patch SUSE-SLE-SERVER-12-SP4-2020-1021=1 Package List: - SUSE Linux Enterprise Workstation Extension 12-SP5 (x86_64): libqt4-debuginfo-32bit-4.8.7-8.13.1 libqt4-debugsource-4.8.7-8.13.1 libqt4-sql-mysql-32bit-4.8.7-8.13.1 libqt4-sql-mysql-debuginfo-32bit-4.8.7-8.13.1 libqt4-sql-plugins-debugsource-4.8.7-8.13.1 libqt4-sql-postgresql-32bit-4.8.7-8.13.1 libqt4-sql-postgresql-4.8.7-8.13.1 libqt4-sql-postgresql-debuginfo-32bit-4.8.7-8.13.1 libqt4-sql-postgresql-debuginfo-4.8.7-8.13.1 libqt4-sql-sqlite-32bit-4.8.7-8.13.1 libqt4-sql-sqlite-debuginfo-32bit-4.8.7-8.13.1 libqt4-sql-unixODBC-32bit-4.8.7-8.13.1 libqt4-sql-unixODBC-4.8.7-8.13.1 libqt4-sql-unixODBC-debuginfo-32bit-4.8.7-8.13.1 libqt4-sql-unixODBC-debuginfo-4.8.7-8.13.1 - SUSE Linux Enterprise Workstation Extension 12-SP4 (x86_64): libqt4-debuginfo-32bit-4.8.7-8.13.1 libqt4-debugsource-4.8.7-8.13.1 libqt4-sql-mysql-32bit-4.8.7-8.13.1 libqt4-sql-mysql-debuginfo-32bit-4.8.7-8.13.1 libqt4-sql-plugins-debugsource-4.8.7-8.13.1 libqt4-sql-postgresql-32bit-4.8.7-8.13.1 libqt4-sql-postgresql-4.8.7-8.13.1 libqt4-sql-postgresql-debuginfo-32bit-4.8.7-8.13.1 libqt4-sql-postgresql-debuginfo-4.8.7-8.13.1 libqt4-sql-sqlite-32bit-4.8.7-8.13.1 libqt4-sql-sqlite-debuginfo-32bit-4.8.7-8.13.1 libqt4-sql-unixODBC-32bit-4.8.7-8.13.1 libqt4-sql-unixODBC-4.8.7-8.13.1 libqt4-sql-unixODBC-debuginfo-32bit-4.8.7-8.13.1 libqt4-sql-unixODBC-debuginfo-4.8.7-8.13.1 - SUSE LinuxEnterprise Software Development Kit 12-SP5 (aarch64 ppc64le s390x x86_64): libqt4-debuginfo-4.8.7-8.13.1 libqt4-debugsource-4.8.7-8.13.1 libqt4-devel-4.8.7-8.13.1 libqt4-devel-debuginfo-4.8.7-8.13.1 libqt4-devel-doc-4.8.7-8.13.1 libqt4-devel-doc-debuginfo-4.8.7-8.13.1 libqt4-devel-doc-debugsource-4.8.7-8.13.1 libqt4-linguist-4.8.7-8.13.1 libqt4-linguist-debuginfo-4.8.7-8.13.1 libqt4-private-headers-devel-4.8.7-8.13.1 libqt4-sql-plugins-debugsource-4.8.7-8.13.1 libqt4-sql-postgresql-4.8.7-8.13.1 libqt4-sql-postgresql-debuginfo-4.8.7-8.13.1 libqt4-sql-unixODBC-4.8.7-8.13.1 libqt4-sql-unixODBC-debuginfo-4.8.7-8.13.1 - SUSE Linux Enterprise Software Development Kit 12-SP5 (s390x x86_64): libqt4-sql-postgresql-32bit-4.8.7-8.13.1 libqt4-sql-postgresql-debuginfo-32bit-4.8.7-8.13.1 libqt4-sql-unixODBC-32bit-4.8.7-8.13.1 libqt4-sql-unixODBC-debuginfo-32bit-4.8.7-8.13.1 - SUSE Linux Enterprise Software Development Kit 12-SP5 (noarch): libqt4-devel-doc-data-4.8.7-8.13.1 - SUSE Linux Enterprise Software Development Kit 12-SP4 (aarch64 ppc64le s390x x86_64): libqt4-debuginfo-4.8.7-8.13.1 libqt4-debugsource-4.8.7-8.13.1 libqt4-devel-4.8.7-8.13.1 libqt4-devel-debuginfo-4.8.7-8.13.1 libqt4-devel-doc-4.8.7-8.13.1 libqt4-devel-doc-debuginfo-4.8.7-8.13.1 libqt4-devel-doc-debugsource-4.8.7-8.13.1 libqt4-linguist-4.8.7-8.13.1 libqt4-linguist-debuginfo-4.8.7-8.13.1 libqt4-private-headers-devel-4.8.7-8.13.1 libqt4-sql-plugins-debugsource-4.8.7-8.13.1 libqt4-sql-postgresql-4.8.7-8.13.1 libqt4-sql-postgresql-debuginfo-4.8.7-8.13.1 libqt4-sql-unixODBC-4.8.7-8.13.1 libqt4-sql-unixODBC-debuginfo-4.8.7-8.13.1 - SUSE Linux Enterprise Software Development Kit 12-SP4 (s390x x86_64): libqt4-sql-postgresql-32bit-4.8.7-8.13.1 libqt4-sql-postgresql-debuginfo-32bit-4.8.7-8.13.1 libqt4-sql-unixODBC-32bit-4.8.7-8.13.1 libqt4-sql-unixODBC-debuginfo-32bit-4.8.7-8.13.1 - SUSE Linux Enterprise Software Development Kit 12-SP4 (noarch): libqt4-devel-doc-data-4.8.7-8.13.1 - SUSE Linux Enterprise Server 12-SP5 (aarch64 ppc64le s390x x86_64): libqt4-4.8.7-8.13.1 libqt4-debuginfo-4.8.7-8.13.1 libqt4-debugsource-4.8.7-8.13.1 libqt4-devel-doc-debuginfo-4.8.7-8.13.1 libqt4-devel-doc-debugsource-4.8.7-8.13.1 libqt4-qt3support-4.8.7-8.13.1 libqt4-qt3support-debuginfo-4.8.7-8.13.1 libqt4-sql-4.8.7-8.13.1 libqt4-sql-debuginfo-4.8.7-8.13.1 libqt4-sql-mysql-4.8.7-8.13.1 libqt4-sql-mysql-debuginfo-4.8.7-8.13.1 libqt4-sql-plugins-debugsource-4.8.7-8.13.1 libqt4-sql-sqlite-4.8.7-8.13.1 libqt4-sql-sqlite-debuginfo-4.8.7-8.13.1 libqt4-x11-4.8.7-8.13.1 libqt4-x11-debuginfo-4.8.7-8.13.1 qt4-x11-tools-4.8.7-8.13.1 qt4-x11-tools-debuginfo-4.8.7-8.13.1 - SUSE Linux Enterprise Server 12-SP5 (s390x x86_64): libqt4-32bit-4.8.7-8.13.1 libqt4-debuginfo-32bit-4.8.7-8.13.1 libqt4-qt3support-32bit-4.8.7-8.13.1 libqt4-qt3support-debuginfo-32bit-4.8.7-8.13.1 libqt4-sql-32bit-4.8.7-8.13.1 libqt4-sql-debuginfo-32bit-4.8.7-8.13.1 libqt4-x11-32bit-4.8.7-8.13.1 libqt4-x11-debuginfo-32bit-4.8.7-8.13.1 - SUSE Linux Enterprise Server 12-SP4 (aarch64 ppc64le s390x x86_64): libqt4-4.8.7-8.13.1 libqt4-debuginfo-4.8.7-8.13.1 libqt4-debugsource-4.8.7-8.13.1 libqt4-devel-doc-debuginfo-4.8.7-8.13.1 libqt4-devel-doc-debugsource-4.8.7-8.13.1 libqt4-qt3support-4.8.7-8.13.1 libqt4-qt3support-debuginfo-4.8.7-8.13.1 libqt4-sql-4.8.7-8.13.1 libqt4-sql-debuginfo-4.8.7-8.13.1 libqt4-sql-mysql-4.8.7-8.13.1 libqt4-sql-mysql-debuginfo-4.8.7-8.13.1 libqt4-sql-plugins-debugsource-4.8.7-8.13.1 libqt4-sql-sqlite-4.8.7-8.13.1 libqt4-sql-sqlite-debuginfo-4.8.7-8.13.1 libqt4-x11-4.8.7-8.13.1 libqt4-x11-debuginfo-4.8.7-8.13.1 qt4-x11-tools-4.8.7-8.13.1 qt4-x11-tools-debuginfo-4.8.7-8.13.1 - SUSE Linux Enterprise Server 12-SP4 (s390x x86_64): libqt4-32bit-4.8.7-8.13.1 libqt4-debuginfo-32bit-4.8.7-8.13.1 libqt4-qt3support-32bit-4.8.7-8.13.1 libqt4-qt3support-debuginfo-32bit-4.8.7-8.13.1 libqt4-sql-32bit-4.8.7-8.13.1 libqt4-sql-debuginfo-32bit-4.8.7-8.13.1 libqt4-x11-32bit-4.8.7-8.13.1 libqt4-x11-debuginfo-32bit-4.8.7-8.13.1 References: https://www.suse.com/security/cve/CVE-2018-15518.html https://www.suse.com/security/cve/CVE-2018-19869.html https://www.suse.com/security/cve/CVE-2018-19873.html https://bugzilla.suse.com/1118595 https://bugzilla.suse.com/1118596 https://bugzilla.suse.com/1118599 https://bugzilla.suse.com/1121214 _______________________________________________ sle-security-updates mailing list
An update that solves one vulnerability and has four fixes is now available. . SUSE Security Update: Security update for libqt4 ______________________________________________________________________________ Announcement ID: SUSE-SU-2018:1902-1 Rating: moderate References: #1039291 #1042657 #956357 #964458 #982826 Cross-References: CVE-2016-10040 Affected Products: SUSE Linux Enterprise Workstation Extension 12-SP3 SUSE Linux Enterprise Software Development Kit 12-SP3 SUSE Linux Enterprise Server 12-SP3 SUSE Linux Enterprise Desktop 12-SP3 ______________________________________________________________________________ An update that solves one vulnerability and has four fixes is now available. Description: This update for libqt4 fixes the following issues: LibQt4 was updated to 4.8.7 (bsc#1039291, CVE-2016-10040): See for more details. Also libQtWebkit4 was updated to 2.3.4 to match libqt4. Also following bugs were fixed: - Enable libqt4-devel-32bit (bsc#982826) - Fixed bolder font in Qt4 apps (boo#956357) Patch Instructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - SUSE Linux Enterprise Workstation Extension 12-SP3: zypper in -t patch SUSE-SLE-WE-12-SP3-2018-1288=1 - SUSE Linux Enterprise Software Development Kit 12-SP3: zypper in -t patch SUSE-SLE-SDK-12-SP3-2018-1288=1 - SUSE Linux Enterprise Server 12-SP3: zypper in -t patch SUSE-SLE-SERVER-12-SP3-2018-1288=1 - SUSE Linux Enterprise Desktop 12-SP3: zypper in -t patch SUSE-SLE-DESKTOP-12-SP3-2018-1288=1 Package List: - SUSE Linux Enterprise Workstation Extension 12-SP3 (x86_64): libqt4-debuginfo-32bit-4.8.7-8.6.1 libqt4-debugsource-4.8.7-8.6.1 libqt4-sql-mysql-32bit-4.8.7-8.6.1 libqt4-sql-mysql-debuginfo-32bit-4.8.7-8.6.1 libqt4-sql-plugins-debugsource-4.8.7-8.6.1 libqt4-sql-postgresql-32bit-4.8.7-8.6.1 libqt4-sql-postgresql-4.8.7-8.6.1 libqt4-sql-postgresql-debuginfo-32bit-4.8.7-8.6.1 libqt4-sql-postgresql-debuginfo-4.8.7-8.6.1 libqt4-sql-sqlite-32bit-4.8.7-8.6.1 libqt4-sql-sqlite-debuginfo-32bit-4.8.7-8.6.1 libqt4-sql-unixODBC-32bit-4.8.7-8.6.1 libqt4-sql-unixODBC-4.8.7-8.6.1 libqt4-sql-unixODBC-debuginfo-32bit-4.8.7-8.6.1 libqt4-sql-unixODBC-debuginfo-4.8.7-8.6.1 qt4-qtscript-0.2.0-11.2.4 qt4-qtscript-debuginfo-0.2.0-11.2.4 qt4-qtscript-debugsource-0.2.0-11.2.4 - SUSE Linux Enterprise Software Development Kit 12-SP3 (aarch64 ppc64le s390x x86_64): libQtWebKit-devel-4.8.7+2.3.4-4.5.1 libqca2-debuginfo-2.0.3-17.2.1 libqca2-debugsource-2.0.3-17.2.1 libqca2-devel-2.0.3-17.2.1 libqca2-devel-debuginfo-2.0.3-17.2.1 libqt4-debuginfo-4.8.7-8.6.1 libqt4-debugsource-4.8.7-8.6.1 libqt4-devel-4.8.7-8.6.1 libqt4-devel-debuginfo-4.8.7-8.6.1 libqt4-devel-doc-4.8.7-8.6.4 libqt4-devel-doc-debuginfo-4.8.7-8.6.4 libqt4-devel-doc-debugsource-4.8.7-8.6.4 libqt4-linguist-4.8.7-8.6.1 libqt4-linguist-debuginfo-4.8.7-8.6.1 libqt4-private-headers-devel-4.8.7-8.6.1 libqt4-sql-plugins-debugsource-4.8.7-8.6.1 libqt4-sql-postgresql-4.8.7-8.6.1 libqt4-sql-postgresql-debuginfo-4.8.7-8.6.1 libqt4-sql-unixODBC-4.8.7-8.6.1 libqt4-sql-unixODBC-debuginfo-4.8.7-8.6.1 - SUSE Linux Enterprise Software Development Kit 12-SP3 (ppc64le x86_64): libQtWebKit4-debuginfo-4.8.7+2.3.4-4.5.1 libQtWebKit4-debugsource-4.8.7+2.3.4-4.5.1 - SUSE Linux Enterprise Software Development Kit 12-SP3 (s390x x86_64): libqt4-sql-postgresql-32bit-4.8.7-8.6.1 libqt4-sql-postgresql-debuginfo-32bit-4.8.7-8.6.1 libqt4-sql-unixODBC-32bit-4.8.7-8.6.1 libqt4-sql-unixODBC-debuginfo-32bit-4.8.7-8.6.1 - SUSE Linux Enterprise Software Development Kit 12-SP3 (noarch): libqt4-devel-doc-data-4.8.7-8.6.4 - SUSE Linux Enterprise Server 12-SP3 (aarch64 ppc64le s390x x86_64): libQtWebKit4-4.8.7+2.3.4-4.5.1 libqca2-2.0.3-17.2.1 libqca2-debuginfo-2.0.3-17.2.1 libqca2-debugsource-2.0.3-17.2.1 libqt4-4.8.7-8.6.1 libqt4-debuginfo-4.8.7-8.6.1 libqt4-debugsource-4.8.7-8.6.1 libqt4-devel-doc-debuginfo-4.8.7-8.6.4 libqt4-devel-doc-debugsource-4.8.7-8.6.4 libqt4-qt3support-4.8.7-8.6.1 libqt4-qt3support-debuginfo-4.8.7-8.6.1 libqt4-sql-4.8.7-8.6.1 libqt4-sql-debuginfo-4.8.7-8.6.1 libqt4-sql-mysql-4.8.7-8.6.1 libqt4-sql-mysql-debuginfo-4.8.7-8.6.1 libqt4-sql-plugins-debugsource-4.8.7-8.6.1 libqt4-sql-sqlite-4.8.7-8.6.1 libqt4-sql-sqlite-debuginfo-4.8.7-8.6.1 libqt4-x11-4.8.7-8.6.1 libqt4-x11-debuginfo-4.8.7-8.6.1 qt4-x11-tools-4.8.7-8.6.4 qt4-x11-tools-debuginfo-4.8.7-8.6.4 - SUSE Linux Enterprise Server 12-SP3 (ppc64le x86_64): libQtWebKit4-debuginfo-4.8.7+2.3.4-4.5.1 libQtWebKit4-debugsource-4.8.7+2.3.4-4.5.1 - SUSE Linux Enterprise Server 12-SP3 (s390x x86_64): libQtWebKit4-32bit-4.8.7+2.3.4-4.5.1 libqca2-32bit-2.0.3-17.2.1 libqca2-debuginfo-32bit-2.0.3-17.2.1 libqt4-32bit-4.8.7-8.6.1 libqt4-debuginfo-32bit-4.8.7-8.6.1 libqt4-qt3support-32bit-4.8.7-8.6.1 libqt4-qt3support-debuginfo-32bit-4.8.7-8.6.1 libqt4-sql-32bit-4.8.7-8.6.1 libqt4-sql-debuginfo-32bit-4.8.7-8.6.1 libqt4-x11-32bit-4.8.7-8.6.1 libqt4-x11-debuginfo-32bit-4.8.7-8.6.1 - SUSE Linux Enterprise Server 12-SP3 (x86_64): libQtWebKit4-debuginfo-32bit-4.8.7+2.3.4-4.5.1 - SUSE Linux Enterprise Desktop 12-SP3 (x86_64): libQtWebKit4-32bit-4.8.7+2.3.4-4.5.1 libQtWebKit4-4.8.7+2.3.4-4.5.1 libQtWebKit4-debuginfo-32bit-4.8.7+2.3.4-4.5.1 libQtWebKit4-debuginfo-4.8.7+2.3.4-4.5.1 libQtWebKit4-debugsource-4.8.7+2.3.4-4.5.1 libqca2-2.0.3-17.2.1 libqca2-32bit-2.0.3-17.2.1 libqca2-debuginfo-2.0.3-17.2.1 libqca2-debuginfo-32bit-2.0.3-17.2.1 libqca2-debugsource-2.0.3-17.2.1 libqt4-32bit-4.8.7-8.6.1 libqt4-4.8.7-8.6.1 libqt4-debuginfo-32bit-4.8.7-8.6.1 libqt4-debuginfo-4.8.7-8.6.1 libqt4-debugsource-4.8.7-8.6.1 libqt4-qt3support-32bit-4.8.7-8.6.1 libqt4-qt3support-4.8.7-8.6.1 libqt4-qt3support-debuginfo-32bit-4.8.7-8.6.1 libqt4-qt3support-debuginfo-4.8.7-8.6.1 libqt4-sql-32bit-4.8.7-8.6.1 libqt4-sql-4.8.7-8.6.1 libqt4-sql-debuginfo-32bit-4.8.7-8.6.1 libqt4-sql-debuginfo-4.8.7-8.6.1 libqt4-sql-mysql-32bit-4.8.7-8.6.1 libqt4-sql-mysql-4.8.7-8.6.1 libqt4-sql-mysql-debuginfo-32bit-4.8.7-8.6.1 libqt4-sql-mysql-debuginfo-4.8.7-8.6.1 libqt4-sql-plugins-debugsource-4.8.7-8.6.1 libqt4-sql-postgresql-32bit-4.8.7-8.6.1 libqt4-sql-postgresql-4.8.7-8.6.1 libqt4-sql-postgresql-debuginfo-32bit-4.8.7-8.6.1 libqt4-sql-postgresql-debuginfo-4.8.7-8.6.1 libqt4-sql-sqlite-32bit-4.8.7-8.6.1 libqt4-sql-sqlite-4.8.7-8.6.1 libqt4-sql-sqlite-debuginfo-32bit-4.8.7-8.6.1 libqt4-sql-sqlite-debuginfo-4.8.7-8.6.1 libqt4-sql-unixODBC-32bit-4.8.7-8.6.1 libqt4-sql-unixODBC-4.8.7-8.6.1 libqt4-sql-unixODBC-debuginfo-32bit-4.8.7-8.6.1 libqt4-sql-unixODBC-debuginfo-4.8.7-8.6.1 libqt4-x11-32bit-4.8.7-8.6.1 libqt4-x11-4.8.7-8.6.1 libqt4-x11-debuginfo-32bit-4.8.7-8.6.1 libqt4-x11-debuginfo-4.8.7-8.6.1 qt4-qtscript-0.2.0-11.2.4 qt4-qtscript-debuginfo-0.2.0-11.2.4 qt4-qtscript-debugsource-0.2.0-11.2.4 References: https://www.suse.com/security/cve/CVE-2016-10040.html https://bugzilla.suse.com/1039291 https://bugzilla.suse.com/1042657 https://bugzilla.suse.com/956357 https://bugzilla.suse.com/964458 https://bugzilla.suse.com/982826 . SUSE Security Update for libqt5 addressing vulnerabilities and moderate severity issued: SUSE-SU-2023:3001-1.. SUSE Linux Update,LibQt4 Update,SUSE Software Fix. . LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.