SUSE-SU-2020:1021-1
Dashboard / Vulnerabilities / SUSE-SU-2020:1021-1
SUSE-SU-2020:1021-1
Summary: Security update for libqt4
Details: This update for libqt4 fixes the following issues: - CVE-2018-15518: Fixed a double free in QXmlStreamReader (bsc#1118595) - CVE-2018-19873: Fixed a segmantation fault via a malformed BMP file (bsc#1118596). - CVE-2018-19869: Fixed an improper checking which might lead to a crach via a malformed url reference (bsc#1118599). - Added stricter toplevel asm parsing by dropping volatile qualification that has no effect (bsc#1121214).
References: https://www.suse.com/support/update/announcement/2020/suse-su-20201021-1/, https://bugzilla.suse.com/1118595, https://bugzilla.suse.com/1118596, https://bugzilla.suse.com/1118599, https://bugzilla.suse.com/1121214, https://www.suse.com/security/cve/CVE-2018-15518, https://www.suse.com/security/cve/CVE-2018-19869, https://www.suse.com/security/cve/CVE-2018-19873
Affected packages
Package
Name: libqt4
Purl: pkg:rpm/suse/libqt4&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP4
Affected ranges
Type: ECOSYSTEM
Events:
