Out-of-bounds write in QtPrivate::QCommonArrayOps ::growAppend (CVE-2021-45930) QtSvg QSvgFont m_unitsPerEm initialization is mishandled. (CVE-2023-32573) . MGASA-2023-0231 - Updated qt4/qtsvg5 packages fix security vulnerability Publication date: 19 Jul 2023 URL: https://advisories.mageia.org/MGASA-2023-0231.html Type: security Affected Mageia releases: 8 CVE: CVE-2021-45930, CVE-2023-32573 Out-of-bounds write in QtPrivate::QCommonArrayOps ::growAppend (CVE-2021-45930) QtSvg QSvgFont m_unitsPerEm initialization is mishandled. (CVE-2023-32573) References: - https://bugs.mageia.org/show_bug.cgi?id=29913 - https://ubuntu.com/security/notices/USN-5241-1 - https://lists.fedoraproject.org/archives/list/
An out of bounds read in function QRadialFetchSimd from crafted svg file may lead to information disclosure or other potential consequences. This update includes the backported upstream fix and should resolve the security issue (CVE-2021-3481). . MGASA-2021-0262 - Updated qt4 and qtsvg5 packages fix a security vulnerability Publication date: 16 Jun 2021 URL: https://advisories.mageia.org/MGASA-2021-0262.html Type: security Affected Mageia releases: 7, 8 CVE: CVE-2021-3481 An out of bounds read in function QRadialFetchSimd from crafted svg file may lead to information disclosure or other potential consequences. This update includes the backported upstream fix and should resolve the security issue (CVE-2021-3481). References: - https://bugs.mageia.org/show_bug.cgi?id=29014 - https://qt-project.atlassian.net//browse/QTBUG-91507 - https://lists.fedoraproject.org/archives/list/
Get the latest Linux and open source security news straight to your inbox.