Vulnerabilities > QT > Medium

DATE CVE VULNERABILITY TITLE RISK
2019-10-23 CVE-2019-18281 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in multiple products
An out-of-bounds memory access in the generateDirectionalRuns() function in qtextengine.cpp in Qt qtbase 5.11.x and 5.12.x before 5.12.5 allows attackers to cause a denial of service by crashing an application via a text file containing many directional characters.
network
low complexity
qt debian CWE-119
4.3
2019-03-21 CVE-2018-19872 Divide By Zero vulnerability in multiple products
An issue was discovered in Qt 5.11.
local
low complexity
qt opensuse fedoraproject CWE-369
5.5
2018-12-26 CVE-2018-19871 Resource Exhaustion vulnerability in multiple products
An issue was discovered in Qt before 5.11.3.
network
low complexity
qt opensuse CWE-400
6.5
2018-12-26 CVE-2018-19869 Improper Input Validation vulnerability in multiple products
An issue was discovered in Qt before 5.11.3.
network
low complexity
qt opensuse CWE-20
6.5
2017-12-16 CVE-2017-10905 Unspecified vulnerability in QT 5.9.0
A vulnerability in applications created using Qt for Android prior to 5.9.3 allows attackers to alter environment variables via unspecified vectors.
local
low complexity
qt
5.3
2017-09-07 CVE-2015-8079 Information Exposure vulnerability in QT Qtwebkit
qt5-qtwebkit before 5.4 records private browsing URLs to its favicon database, WebpageIcons.db.
network
low complexity
qt CWE-200
5.3
2017-03-07 CVE-2016-10040 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in QT Qxmlsimplereader 4.8.5
Stack-based buffer overflow in QXmlSimpleReader in Qt 4.8.5 allows remote attackers to cause a denial of service (application crash) via a xml file with multiple nested open tags.
local
low complexity
qt CWE-119
5.5