MGASA-2014-0009

Source
https://advisories.mageia.org/MGASA-2014-0009.html
Import Source
https://advisories.mageia.org/MGASA-2014-0009.json
JSON Data
https://api.osv.dev/v1/vulns/MGASA-2014-0009
Related
Published
2014-01-17T00:20:35Z
Modified
2014-01-17T00:45:11Z
Summary
Updated qt4 package fixes security vulnerability
Details

It was discovered that QXmlSimpleReader in Qt incorrectly handled XML entity expansion. An attacker could use this flaw to cause Qt applications to consume large amounts of resources, resulting in a denial of service (CVE-2013-4549).

References
Credits

Affected packages

Mageia:3 / qt4

Package

Name
qt4
Purl
pkg:rpm/mageia/qt4?distro=mageia-3

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.8.5-1.3.mga3

Ecosystem specific

{
    "section": "core"
}