FreshPorts - VuXML

This page displays vulnerability information about FreeBSD Ports.

The VUXML data was last processed by FreshPorts on 2024-04-24 03:12:49 UTC

List all Vulnerabilities, by package

List all Vulnerabilities, by date

k68

These are the vulnerabilities relating to the commit you have selected:

VuXML IDDescription
c9c3374d-c2c1-11e4-b236-5453ed2e2b49qt4-gui, qt5-gui -- DoS vulnerability in the BMP image handler

Richard J. Moore reports:

The builtin BMP decoder in QtGui prior to Qt 5.5 contained a bug that would lead to a division by zero when loading certain corrupt BMP files. This in turn would cause the application loading these hand crafted BMPs to crash.


Discovery 2015-02-22
Entry 2015-03-05
qt4-gui
< 4.8.6_4

qt5-gui
< 5.3.2_2

CVE-2015-0295
http://lists.qt-project.org/pipermail/announce/2015-February/000059.html