Security Vulnerability in Linux Qt Toolkit Fixed

    Date24 Aug 2004
    4091
    Posted ByAnthony Pell
    The flaw was unveiled by security researcher Chris Evans, who uncovered a heap overflow in the BMP image decoder in Qt versions prior to 3.3.3. Flaws were also discovered in prior Qt versions in the XPM, GIF and JPEG decoders. . . . Linux vendors have issued patches to address vulnerability in the Qt, a software toolkit that simplifies writing and maintaining GUI applications for the X Window system.

    The flaw was unveiled by security researcher Chris Evans, who uncovered a heap overflow in the BMP image decoder in Qt versions prior to 3.3.3. Flaws were also discovered in prior Qt versions in the XPM, GIF and JPEG decoders.

    By using the vulnerabilities, an attacker could use a BMP file to crash an application linked to Qt or execute arbitrary code when a file is opened by an unsuspecting user

    You are not authorised to post comments.

    LinuxSecurity Poll

    Has your email account ever been pwned in a data breach?

    No answer selected. Please try again.
    Please select either existing option or enter your own, however not both.
    Please select minimum 0 answer(s) and maximum 2 answer(s).
    /component/communitypolls/?task=poll.vote
    12
    radio
    [{"id":"53","title":"Yes","votes":"9","type":"x","order":"1","pct":90,"resources":[]},{"id":"54","title":"No","votes":"1","type":"x","order":"2","pct":10,"resources":[]}]["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"]["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"]350
    bottom200

    We use cookies to provide and improve our services. By using our site, you consent to our Cookie Policy.