CVE Vulnerabilities

CVE-2025-10728

Uncontrolled Recursion

Published: Oct 03, 2025 | Modified: Oct 06, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
4 MODERATE
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

When the module renders a Svg file that contains a element, it might end up rendering it recursively leading to stack overflow DoS

Weakness

The product does not properly control the amount of recursion that takes place, consuming excessive resources, such as allocated memory or the program stack.

Affected Software

NameVendorStart VersionEnd Version
Red Hat Enterprise Linux 10RedHatqt6-qtsvg-0:6.9.1-2.el10_1.2*
Red Hat Enterprise Linux 10.0 Extended Update SupportRedHatqt6-qtsvg-0:6.8.1-1.el10_0.2*
Qt6-svgUbuntuplucky*
Qtsvg-opensource-srcUbuntuupstream*

Potential Mitigations

References