RLSA-2021:4172
Dashboard / Vulnerabilities / RLSA-2021:4172
Summary: Moderate: qt5 security, bug fix, and enhancement update
Details: Qt is a software toolkit for developing applications. The following packages have been upgraded to a later upstream version: adwaita-qt (1.2.1), python-qt5 (5.15.0), qgnomeplatform (0.7.1), qt5 (5.15.2), qt5-qt3d (5.15.2), qt5-qtbase (5.15.2), qt5-qtconnectivity (5.15.2), qt5-qtdeclarative (5.15.2), qt5-qtdoc (5.15.2), qt5-qtgraphicaleffects (5.15.2), qt5-qtimageformats (5.15.2), qt5-qtlocation (5.15.2), qt5-qtmultimedia (5.15.2), qt5-qtquickcontrols (5.15.2), qt5-qtquickcontrols2 (5.15.2), qt5-qtscript (5.15.2), qt5-qtsensors (5.15.2), qt5-qtserialbus (5.15.2), qt5-qtserialport (5.15.2), qt5-qtsvg (5.15.2), qt5-qttools (5.15.2), qt5-qttranslations (5.15.2), qt5-qtwayland (5.15.2), qt5-qtwebchannel (5.15.2), qt5-qtwebsockets (5.15.2), qt5-qtx11extras (5.15.2), qt5-qtxmlpatterns (5.15.2), sip (4.19.24). (BZ#1928156) Security Fix(es): * qt: Out of bounds read in function QRadialFetchSimd from crafted svg file (CVE-2021-3481) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Rocky Linux 8.5 Release Notes linked from the References section.
References: https://errata.rockylinux.org/RLSA-2021:4172, https://bugzilla.redhat.com/show_bug.cgi?id=1928156, https://bugzilla.redhat.com/show_bug.cgi?id=1930039, https://bugzilla.redhat.com/show_bug.cgi?id=1930040, https://bugzilla.redhat.com/show_bug.cgi?id=1930041, https://bugzilla.redhat.com/show_bug.cgi?id=1930042, https://bugzilla.redhat.com/show_bug.cgi?id=1930043, https://bugzilla.redhat.com/show_bug.cgi?id=1930044, https://bugzilla.redhat.com/show_bug.cgi?id=1930045, https://bugzilla.redhat.com/show_bug.cgi?id=1930046, https://bugzilla.redhat.com/show_bug.cgi?id=1930047, https://bugzilla.redhat.com/show_bug.cgi?id=1930048, https://bugzilla.redhat.com/show_bug.cgi?id=1930049, https://bugzilla.redhat.com/show_bug.cgi?id=1930050, https://bugzilla.redhat.com/show_bug.cgi?id=1930051, https://bugzilla.redhat.com/show_bug.cgi?id=1930052, https://bugzilla.redhat.com/show_bug.cgi?id=1930053, https://bugzilla.redhat.com/show_bug.cgi?id=1930054, https://bugzilla.redhat.com/show_bug.cgi?id=1930055, https://bugzilla.redhat.com/show_bug.cgi?id=1930056, https://bugzilla.redhat.com/show_bug.cgi?id=1930057, https://bugzilla.redhat.com/show_bug.cgi?id=1930058, https://bugzilla.redhat.com/show_bug.cgi?id=1930059, https://bugzilla.redhat.com/show_bug.cgi?id=1930060, https://bugzilla.redhat.com/show_bug.cgi?id=1930061, https://bugzilla.redhat.com/show_bug.cgi?id=1930062, https://bugzilla.redhat.com/show_bug.cgi?id=1930063, https://bugzilla.redhat.com/show_bug.cgi?id=1930073, https://bugzilla.redhat.com/show_bug.cgi?id=1930074, https://bugzilla.redhat.com/show_bug.cgi?id=1931444, https://bugzilla.redhat.com/show_bug.cgi?id=1949066, https://bugzilla.redhat.com/show_bug.cgi?id=1949080
Affected packages
Package
Name: adwaita-qt
Purl: pkg:rpm/rocky-linux/adwaita-qt?distro=rocky-linux-8-5-legacy&epoch=0
Affected ranges
Type: ECOSYSTEM
Events:
