Show filters
9 Total Results
Displaying 1-9 of 9
Sort by:
Attacker Value
Unknown
CVE-2007-5965
Disclosure Date: January 08, 2008 (last updated October 04, 2023)
QSslSocket in Trolltech Qt 4.3.0 through 4.3.2 does not properly verify SSL certificates, which might make it easier for remote attackers to trick a user into accepting an invalid server certificate for a spoofed service, or trick a service into accepting an invalid client certificate for a user.
0
Attacker Value
Unknown
CVE-2007-4137
Disclosure Date: September 18, 2007 (last updated November 08, 2023)
Off-by-one error in the QUtf8Decoder::toUnicode function in Trolltech Qt 3 allows context-dependent attackers to cause a denial of service (crash) via a crafted Unicode string that triggers a heap-based buffer overflow. NOTE: Qt 4 has the same error in the QUtf8Codec::convertToUnicode function, but it is not exploitable.
0
Attacker Value
Unknown
CVE-2007-3388
Disclosure Date: August 03, 2007 (last updated October 04, 2023)
Multiple format string vulnerabilities in (1) qtextedit.cpp, (2) qdatatable.cpp, (3) qsqldatabase.cpp, (4) qsqlindex.cpp, (5) qsqlrecord.cpp, (6) qglobal.cpp, and (7) qsvgdevice.cpp in QTextEdit in Trolltech Qt 3 before 3.3.8 20070727 allow remote attackers to execute arbitrary code via format string specifiers in text used to compose an error message.
0
Attacker Value
Unknown
CVE-2005-0627
Disclosure Date: May 02, 2005 (last updated October 04, 2023)
Qt before 3.3.4 searches the BUILD_PREFIX directory, which could be world-writable, to load shared libraries regardless of the LD_LIBRARY_PATH environment variable, which allows local users to execute arbitrary programs.
0
Attacker Value
Unknown
CVE-2004-0693
Disclosure Date: September 28, 2004 (last updated October 04, 2023)
The GIF parser in the QT library (qt3) before 3.3.3 allows remote attackers to cause a denial of service (application crash) via a malformed image file that triggers a null dereference, a different vulnerability than CVE-2004-0692.
0
Attacker Value
Unknown
CVE-2004-0691
Disclosure Date: September 28, 2004 (last updated October 04, 2023)
Heap-based buffer overflow in the BMP image format parser for the QT library (qt3) before 3.3.3 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code.
0
Attacker Value
Unknown
CVE-2004-0692
Disclosure Date: September 28, 2004 (last updated October 04, 2023)
The XPM parser in the QT library (qt3) before 3.3.3 allows remote attackers to cause a denial of service (application crash) via a malformed image file that triggers a null dereference, a different vulnerability than CVE-2004-0693.
0
Attacker Value
Unknown
CVE-2002-1883
Disclosure Date: December 31, 2002 (last updated October 03, 2023)
Trolltech Qt Assistant 1.0 in Trolltech Qt 3.0.3, when loaded from the Designer, opens port 7358 for interprocess communication, which allows remote attackers to open arbitrary HTML pages and cause a denial of service.
0
Attacker Value
Unknown
CVE-2001-1113
Disclosure Date: August 13, 2001 (last updated October 03, 2023)
Buffer overflow in TrollFTPD 1.26 and earlier allows local users to execute arbitrary code by creating a series of deeply nested directories with long names, then running the ls -R (recursive) command.
0