QXmlStream in Qt 5.x before 5.11.3 has a double-free or corruption during parsing of a specially crafted illegal XML document.
The product calls free() twice on the same memory address, potentially leading to modification of unexpected memory locations.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Qt | Qt | 5.5.0 (including) | 5.11.3 (excluding) |
Red Hat Enterprise Linux 7 | RedHat | qt5-qt3d-0:5.9.7-1.el7 | * |
Red Hat Enterprise Linux 7 | RedHat | qt5-qtbase-0:5.9.7-2.el7 | * |
Red Hat Enterprise Linux 7 | RedHat | qt5-qtcanvas3d-0:5.9.7-1.el7 | * |
Red Hat Enterprise Linux 7 | RedHat | qt5-qtconnectivity-0:5.9.7-1.el7 | * |
Red Hat Enterprise Linux 7 | RedHat | qt5-qtdeclarative-0:5.9.7-1.el7 | * |
Red Hat Enterprise Linux 7 | RedHat | qt5-qtdoc-0:5.9.7-1.el7 | * |
Red Hat Enterprise Linux 7 | RedHat | qt5-qtgraphicaleffects-0:5.9.7-1.el7 | * |
Red Hat Enterprise Linux 7 | RedHat | qt5-qtimageformats-0:5.9.7-1.el7 | * |
Red Hat Enterprise Linux 7 | RedHat | qt5-qtlocation-0:5.9.7-1.el7 | * |
Red Hat Enterprise Linux 7 | RedHat | qt5-qtmultimedia-0:5.9.7-1.el7 | * |
Red Hat Enterprise Linux 7 | RedHat | qt5-qtquickcontrols-0:5.9.7-1.el7 | * |
Red Hat Enterprise Linux 7 | RedHat | qt5-qtquickcontrols2-0:5.9.7-1.el7 | * |
Red Hat Enterprise Linux 7 | RedHat | qt5-qtscript-0:5.9.7-1.el7 | * |
Red Hat Enterprise Linux 7 | RedHat | qt5-qtsensors-0:5.9.7-1.el7 | * |
Red Hat Enterprise Linux 7 | RedHat | qt5-qtserialbus-0:5.9.7-1.el7 | * |
Red Hat Enterprise Linux 7 | RedHat | qt5-qtserialport-0:5.9.7-1.el7 | * |
Red Hat Enterprise Linux 7 | RedHat | qt5-qtsvg-0:5.9.7-1.el7 | * |
Red Hat Enterprise Linux 7 | RedHat | qt5-qttools-0:5.9.7-1.el7 | * |
Red Hat Enterprise Linux 7 | RedHat | qt5-qttranslations-0:5.9.7-1.el7 | * |
Red Hat Enterprise Linux 7 | RedHat | qt5-qtwayland-0:5.9.7-1.el7 | * |
Red Hat Enterprise Linux 7 | RedHat | qt5-qtwebchannel-0:5.9.7-1.el7 | * |
Red Hat Enterprise Linux 7 | RedHat | qt5-qtwebsockets-0:5.9.7-1.el7 | * |
Red Hat Enterprise Linux 7 | RedHat | qt5-qtx11extras-0:5.9.7-1.el7 | * |
Red Hat Enterprise Linux 7 | RedHat | qt5-qtxmlpatterns-0:5.9.7-1.el7 | * |
Red Hat Enterprise Linux 7 | RedHat | qt-1:4.8.7-8.el7 | * |
Red Hat Enterprise Linux 8 | RedHat | qt5-qtbase-0:5.11.1-7.el8 | * |
Red Hat Enterprise Linux 8 | RedHat | qt5-qttools-0:5.11.1-9.el8 | * |
Qtbase-opensource-src | Ubuntu | bionic | * |
Qtbase-opensource-src | Ubuntu | cosmic | * |
Qtbase-opensource-src | Ubuntu | devel | * |
Qtbase-opensource-src | Ubuntu | disco | * |
Qtbase-opensource-src | Ubuntu | trusty | * |
Qtbase-opensource-src | Ubuntu | upstream | * |
Qtbase-opensource-src | Ubuntu | xenial | * |