Vulnerabilities > QT > Critical

DATE CVE VULNERABILITY TITLE RISK
2023-12-24 CVE-2023-51714 Integer Overflow or Wraparound vulnerability in QT
An issue was discovered in the HTTP2 implementation in Qt before 5.15.17, 6.x before 6.2.11, 6.3.x through 6.5.x before 6.5.4, and 6.6.x before 6.6.2.
network
low complexity
qt CWE-190
critical
9.8
2020-04-27 CVE-2020-12267 Use After Free vulnerability in QT 5.14.1
setMarkdown in Qt before 5.14.2 has a use-after-free related to QTextMarkdownImporter::insertBlock.
network
low complexity
qt CWE-416
critical
9.8
2012-06-16 CVE-2011-3194 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in QT 4.7.4
Buffer overflow in the TIFF reader in gui/image/qtiffhandler.cpp in Qt 4.7.4 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via the TIFFTAG_SAMPLESPERPIXEL tag in a greyscale TIFF image with multiple samples per pixel.
network
qt CWE-119
critical
9.3
2012-06-16 CVE-2011-3193 Out-Of-Bounds Write vulnerability in multiple products
Heap-based buffer overflow in the Lookup_MarkMarkPos function in the HarfBuzz module (harfbuzz-gpos.c), as used by Qt before 4.7.4 and Pango, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted font file.
9.3