4.3
CVSSv2

CVE-2021-45930

Published: 01/01/2022 Updated: 07/11/2023
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 5.5 | Impact Score: 3.6 | Exploitability Score: 1.8
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:N/A:P

Vulnerability Summary

Qt SVG in Qt 5.0.0 up to and including 5.15.2 and 6.0.0 up to and including 6.2.1 has an out-of-bounds write in QtPrivate::QCommonArrayOps<QPainterPath::Element>::growAppend (called from QPainterPath::addPath and QPathClipper::intersect).

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

qt qtsvg

fedoraproject fedora 34

fedoraproject fedora 35

debian debian linux 9.0

Vendor Advisories

Debian Bug report logs - #1002991 qtsvg-opensource-src: CVE-2021-45930 Package: src:qtsvg-opensource-src; Maintainer for src:qtsvg-opensource-src is Debian Qt/KDE Maintainers &lt;debian-qt-kde@listsdebianorg&gt;; Reported by: Salvatore Bonaccorso &lt;carnil@debianorg&gt; Date: Sun, 2 Jan 2022 13:09:02 UTC Severity: important ...
Qt SVG in Qt 500 through 5152 and 600 through 621 has an out-of-bounds write in QtPrivate::QCommonArrayOps&lt;QPainterPath::Element&gt;::growAppend (called from QPainterPath::addPath and QPathClipper::intersect) (CVE-2021-45930) ...
Qt SVG in Qt 500 through 5152 and 600 through 621 has an out-of-bounds write in QtPrivate::QCommonArrayOps&amp;lt;QPainterPath::Element&amp;gt;::growAppend (called from QPainterPath::addPath and QPathClipper::intersect) ...