External control of file name or path In qtbase-opensource-src
Description
Uncontrolled search path in the QT Library before 5.14.0, 5.12.7 and 5.9.10 may allow an authenticated user to potentially enable elevation of privilege via local access.
Mitigation
Update Impact
Minimal update. May introduce new vulnerabilities or breaking changes.
Ecosystem | Package | Affected version | Patched versions |
|---|---|---|---|
debian 12 | 5.12.5+dfsg-8 | ||
debian 11 | 5.12.5+dfsg-8 | ||
debian 13 | 5.12.5+dfsg-8 | ||
debian 14 | 5.12.5+dfsg-8 | ||
rpm rhel7 | 0:5.9.7-4.el7 | ||
rpm rhel8 | 0:5.12.5-2.el8 | ||
rpm rhel8 | 0:5.12.5-2.el8 | ||
rpm rhel8 | - | - | |
rpm rhel8 | 0:5.12.5-6.el8 |
Aliases
1. 2. 3. 4. 5.