CVE Vulnerabilities

CVE-2023-32573

Divide By Zero

Published: May 10, 2023 | Modified: Jan 27, 2025
CVSS 3.x
6.5
MEDIUM
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
6.5 LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

In Qt before 5.15.14, 6.0.x through 6.2.x before 6.2.9, and 6.3.x through 6.5.x before 6.5.1, QtSvg QSvgFont m_unitsPerEm initialization is mishandled.

Weakness

The product divides a value by zero.

Affected Software

NameVendorStart VersionEnd Version
QtQt*5.15.14 (excluding)
QtQt6.0.0 (including)6.2.9 (excluding)
QtQt6.3.0 (including)6.5.1 (excluding)
Red Hat Enterprise Linux 8RedHatqt5-qtsvg-0:5.15.3-2.el8*
Red Hat Enterprise Linux 9RedHatqt5-0:5.15.9-1.el9*
Qt6-svgUbuntukinetic*
Qt6-svgUbuntulunar*
Qt6-svgUbuntumantic*
Qt6-svgUbuntuoracular*
Qt6-svgUbuntuplucky*
Qt6-svgUbuntutrusty*
Qt6-svgUbuntuxenial*
Qtsvg-opensource-srcUbuntubionic*
Qtsvg-opensource-srcUbuntuesm-apps/focal*
Qtsvg-opensource-srcUbuntuesm-apps/jammy*
Qtsvg-opensource-srcUbuntuesm-apps/noble*
Qtsvg-opensource-srcUbuntuesm-infra/bionic*
Qtsvg-opensource-srcUbuntuesm-infra/xenial*
Qtsvg-opensource-srcUbuntufocal*
Qtsvg-opensource-srcUbuntujammy*
Qtsvg-opensource-srcUbuntukinetic*
Qtsvg-opensource-srcUbuntulunar*
Qtsvg-opensource-srcUbuntumantic*
Qtsvg-opensource-srcUbuntunoble*
Qtsvg-opensource-srcUbuntuoracular*
Qtsvg-opensource-srcUbuntutrusty*
Qtsvg-opensource-srcUbuntuupstream*
Qtsvg-opensource-srcUbuntuxenial*

References