pkg:Debian/qtbase-opensource-src
39 total CVEsCRITICAL2HIGH14MEDIUM16
✅ Check your installed version
All known vulnerabilities
- CRITICAL9.8CVE-2023-51714An issue was discovered in the HTTP2 implementation in Qt before 5.15.17, 6.x before 6.2.11, 6.3.x through 6.5.x before 6.5.4, and 6.6.x be…from 0, < 5.15.2+dfsg-9+deb11u1
- from 0, < 5.11.3+dfsg-2
- from 0, < 5.11.3+dfsg-2
- from 0, < 5.11.3+dfsg-2
- from 0, < 5.7.1+dfsg-3+deb9u1
- from 0, < 5.3.2+dfsg-4+deb8u3
- HIGH7.8CVE-2022-25255In Qt 5.9.x through 5.15.x before 5.15.9 and 6.x before 6.2.4 on Linux and UNIX, QProcess could execute a binary from the current working d…from 0, < 5.15.2+dfsg-9+deb11u1
- HIGH7.8CVE-2020-24742An issue has been fixed in Qt versions 5.14.0 where QPluginLoader attempts to load plugins relative to the working directory, allowing atta…from 0, < 5.12.5+dfsg-8
- HIGH7.5CVE-2023-37369In Qt before 5.15.15, 6.x before 6.2.9, and 6.3.x through 6.5.x before 6.5.2, there can be an application crash in QXmlStreamReader via a c…from 0, < 5.15.2+dfsg-9+deb11u1
- HIGH7.5CVE-2023-38197An issue was discovered in Qt before 5.15.15, 6.x before 6.2.10, and 6.3.x through 6.5.x before 6.5.3.from 0, < 5.15.2+dfsg-9+deb11u1
- HIGH7.5CVE-2023-32763An issue was discovered in Qt before 5.15.15, 6.x before 6.2.9, and 6.3.x through 6.5.x before 6.5.1.from 0, < 5.15.2+dfsg-9+deb11u1
- from 0, < 5.11.3+dfsg1-1+deb10u6
- from 0, < 5.15.2+dfsg-9+deb11u1
- HIGH7.5CVE-2020-13962Qt 5.12.2 through 5.14.2, as used in unofficial builds of Mumble 1.3.0 and other products, mishandles OpenSSL's error queue, which can caus…from 0, < 5.14.2+dfsg-6
- HIGH7.5CVE-2015-9541Qt through 5.14 allows an exponential XML entity expansion attack via a crafted SVG document that is mishandled in QXmlStreamReader, a rela…from 0, < 5.12.5+dfsg-9
- HIGH7.3CVE-2020-0570Uncontrolled search path in the QT Library before 5.14.0, 5.12.7 and 5.9.10 may allow an authenticated user to potentially enable elevation…from 0, < 5.12.5+dfsg-8
- MEDIUM6.2CVE-2024-25580An issue was discovered in gui/util/qktxhandler.cpp in Qt before 5.15.17, 6.x before 6.2.12, 6.3.x through 6.5.x before 6.5.5, and 6.6.x be…from 0, < 5.15.2+dfsg-9+deb11u1
- from 0, < 5.15.2+dfsg-9+deb11u2
- from 0, < 5.15.2+dfsg-9+deb11u2
- from 0, < 5.7.1+dfsg-3+deb9u2
- from 0, < 5.12.5+dfsg-8
- from 0, < 5.3.2+dfsg-4+deb8u4
- from 0, < 5.11.2+dfsg-3
- from 0, < 5.7.1+dfsg-3+deb9u3
- MEDIUM5.5CVE-2016-10040Stack-based buffer overflow in QXmlSimpleReader in Qt 4.8.5 allows remote attackers to cause a denial of service (application crash) via a…from 0, < 5.2.0+dfsg-7
- MEDIUM5.3CVE-2023-34410An issue was discovered in Qt before 5.15.15, 6.x before 6.2.9, and 6.3.x through 6.5.x before 6.5.2.from 0, < 5.15.2+dfsg-9+deb11u1
- MEDIUM5.3CVE-2023-32762An issue was discovered in Qt before 5.15.14, 6.x before 6.2.9, and 6.3.x through 6.5.x before 6.5.1.from 0, < 5.15.2+dfsg-9+deb11u1
- MEDIUM5.3CVE-2023-33285An issue was discovered in Qt 5.x before 5.15.14, 6.x before 6.2.9, and 6.3.x through 6.5.x before 6.5.1.from 0, < 5.15.2+dfsg-9+deb11u1
- MEDIUM5.3CVE-2020-17507An issue was discovered in Qt through 5.12.9, and 5.13.x through 5.15.x before 5.15.1.from 0, < 5.14.2+dfsg-6
- from 0, < 5.12.5+dfsg-2
- from 0, < 5.11.3+dfsg1-1+deb10u1
- MEDIUM4.2CVE-2023-45935Qt 6 through 6.6 was discovered to contain a NULL pointer dereference via the function QXcbConnection::initializeAllAtoms().from 0
- —CVE-2025-5991There is a "Use After Free" vulnerability in Qt's QHttp2ProtocolHandler in the QtNetwork module.from 0
- —CVE-2025-5455An issue was found in the private API function qDecodeDataUrl() in QtCore, which is used in QTextDocument and QNetworkReply, and, potential…from 0
- —CVE-2015-1860Multiple buffer overflows in gui/image/qgifhandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remote attackers…from 0, < 5.3.2+dfsg-5
- —CVE-2015-1859Multiple buffer overflows in plugins/imageformats/ico/qicohandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow re…from 0, < 5.3.2+dfsg-5
- —CVE-2015-1858Multiple buffer overflows in gui/image/qbmphandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remote attackers…from 0, < 5.3.2+dfsg-5
- —CVE-2015-0295The BMP decoder in QtGui in QT before 5.5 does not properly calculate the masks used to extract the color components, which allows remote a…from 0, < 5.3.2+dfsg-5
- —CVE-2013-4549QXmlSimpleReader in Qt before 5.2 allows context-dependent attackers to cause a denial of service (memory consumption) via an XML Entity Ex…from 0, < 5.1.1+dfsg-6