summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorSalvatore Bonaccorso <carnil@debian.org>2021-04-02 14:24:00 +0200
committerSalvatore Bonaccorso <carnil@debian.org>2021-04-02 14:24:00 +0200
commitb3a147d3cdf80a0a3089b7364c9684aa57e9a62e (patch)
tree12608877a39e9f636fa2c696de5bd7fd3fbb1265
parent4a9b0112ef6fa459df28fd9269da515d34ebf363 (diff)
Add CVE-2021-3481/qtsvg
-rw-r--r--data/CVE/2021.list13
1 files changed, 11 insertions, 2 deletions
diff --git a/data/CVE/2021.list b/data/CVE/2021.list
index 2e75a3c55a..5bc5a058ce 100644
--- a/data/CVE/2021.list
+++ b/data/CVE/2021.list
@@ -127,8 +127,17 @@ CVE-2021-30002 (An issue was discovered in the Linux kernel before 5.11.3 when a
- linux 5.10.24-1
[buster] - linux 4.19.181-1
NOTE: https://git.kernel.org/linus/fb18802a338b36f675a388fc03d2aa504a0d0899
-CVE-2021-3481
- RESERVED
+CVE-2021-3481 [Out of bounds read in function QRadialFetchSimd from crafted svg file]
+ RESERVED
+ - qtsvg-opensource-src <unfixed>
+ - qt4-x11 <removed>
+ NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=1931444
+ NOTE: https://bugreports.qt.io/browse/QTBUG-91507
+ NOTE: https://codereview.qt-project.org/gitweb?p=qt%2Fqtsvg.git;a=commit;h=bfd6ee0d8cf34b63d32adf10ed93daa0086b359f (qt/qtsvg/dev)
+ NOTE: https://codereview.qt-project.org/gitweb?p=qt%2Fqtsvg.git;a=commit;h=0fa522904d65b73d48d5fadf690131e9ebb58d2a (qt/qtsvg/6.0)
+ NOTE: https://codereview.qt-project.org/gitweb?p=qt%2Fqtsvg.git;a=commit;h=9f7ccbfc68d20d0dc2ddc1e7dee5572dcf7dcd48 (qt/qtsvg/6.1)
+ NOTE: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=31668
+ NOTE: https://codereview.qt-project.org/c/qt/qtsvg/+/337587
CVE-2021-29943
RESERVED
CVE-2021-29942 (An issue was discovered in the reorder crate through 2021-02-24 for Ru ...)

© 2014-2024 Faster IT GmbH | imprint | privacy policy