4.3
CVSSv3

CVE-2019-18281

Published: 23/10/2019 Updated: 18/02/2020
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 4.3 | Impact Score: 1.4 | Exploitability Score: 2.8
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:N/A:P

Vulnerability Summary

An out-of-bounds memory access in the generateDirectionalRuns() function in qtextengine.cpp in Qt qtbase 5.11.x and 5.12.x prior to 5.12.5 allows malicious users to cause a denial of service by crashing an application via a text file containing many directional characters.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

qt qtbase

debian debian linux 9.0

debian debian linux 10.0

Vendor Advisories

Several security issues were fixed in Qt ...
An out-of-bounds memory access was discovered in the Qt library, which could result in denial of service through a text file containing many directional characters The oldstable distribution (stretch) is not affected For the stable distribution (buster), this problem has been fixed in version 5113+dfsg1-1+deb10u1 We recommend that you upgrade ...