CVE-2015-1858
Publication date 12 May 2015
Last updated 24 July 2024
Ubuntu priority
Multiple buffer overflows in gui/image/qbmphandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remote attackers to cause a denial of service (segmentation fault and crash) and possibly execute arbitrary code via a crafted BMP image.
Status
Package | Ubuntu Release | Status |
---|---|---|
qt4-x11 | ||
18.04 LTS bionic |
Fixed 4.8.6+git64-g5dc8b2b+dfsg-3~ubuntu7
|
|
16.04 LTS xenial |
Fixed 4.8.6+git64-g5dc8b2b+dfsg-3~ubuntu7
|
|
14.04 LTS trusty |
Fixed 4:4.8.5+git192-g085f851+dfsg-2ubuntu4.1
|
|
qtbase-opensource-src | ||
18.04 LTS bionic |
Not affected
|
|
16.04 LTS xenial |
Not affected
|
|
14.04 LTS trusty |
Fixed 5.2.1+dfsg-1ubuntu14.3
|
|
Patch details
Package | Patch details |
---|---|
qt4-x11 |
|
References
Related Ubuntu Security Notices (USN)
- USN-2626-1
- Qt vulnerabilities
- 3 June 2015