qt5-qtbase-5.15.9-7.el9
エラータID: AXSA:2023-6887:01
リリース日:
2023/12/12 Tuesday - 09:20
題名:
qt5-qtbase-5.15.9-7.el9
影響のあるチャネル:
MIRACLE LINUX 9 for x86_64
Severity:
High
Description:
以下項目について対処しました。
[Security Fix]
- Qt の QXmlStreamReader には、バッファーオーバーフローの
問題があるため、リモートの攻撃者により、巧妙に細工された
XML 形式のデータを介して、サービス拒否攻撃 (クラッシュの
発生) を可能とする脆弱性が存在します。(CVE-2023-37369)
- Qtbase の QXmlStreamReader() 関数には、再帰的な
エンティティの展開処理において無限ループが発生する問題が
あるため、ローカルの攻撃者により、細工された XML 形式の
データを介して、サービス拒否攻撃を可能とする脆弱性が存在
します。(CVE-2023-38197)
解決策:
パッケージをアップデートしてください。
CVE:
CVE-2023-37369
In Qt before 5.15.15, 6.x before 6.2.9, and 6.3.x through 6.5.x before 6.5.2, there can be an application crash in QXmlStreamReader via a crafted XML string that triggers a situation in which a prefix is greater than a length.
In Qt before 5.15.15, 6.x before 6.2.9, and 6.3.x through 6.5.x before 6.5.2, there can be an application crash in QXmlStreamReader via a crafted XML string that triggers a situation in which a prefix is greater than a length.
CVE-2023-38197
An issue was discovered in Qt before 5.15.15, 6.x before 6.2.10, and 6.3.x through 6.5.x before 6.5.3. There are infinite loops in recursive entity expansion.
An issue was discovered in Qt before 5.15.15, 6.x before 6.2.10, and 6.3.x through 6.5.x before 6.5.3. There are infinite loops in recursive entity expansion.
追加情報:
N/A
ダウンロード:
SRPMS
- qt5-qtbase-5.15.9-7.el9.src.rpm
MD5: 79178e95d0dea44afd732f64fa300b83
SHA-256: 157905fe4275255baf15f95b81268aa94807b1287ea15af0b4d6a075e8540e4b
Size: 49.07 MB
Asianux Server 9 for x86_64
- qt5-qtbase-5.15.9-7.el9.i686.rpm
MD5: c1ede1d9262daea962376ca3c4d6fd20
SHA-256: 559a74972282824e9ecf0b92a6a6f99ee3010e810bb193a5f52ad5cfa93aca49
Size: 3.80 MB - qt5-qtbase-5.15.9-7.el9.x86_64.rpm
MD5: 17432d2f706b2b5e49a8275187bac100
SHA-256: 53010c2b73f7127716e1bf3a0e3465eafe051ed6a1fb2c4c4ac5d2557f8afa6c
Size: 3.52 MB - qt5-qtbase-common-5.15.9-7.el9.noarch.rpm
MD5: 8595382a2e8fb28a838268f640fbcb10
SHA-256: b0cd82f79541d7beb11de2a72068c5d284d76fc2f9c21348ff04f6f898d3bd4d
Size: 8.84 kB - qt5-qtbase-devel-5.15.9-7.el9.i686.rpm
MD5: 8e3561f849ea4236a53da4293e10ec00
SHA-256: 1ccc8579256ec46d8e957f02a60eb1844665cdefd8287aec481e37d9e517ec65
Size: 3.31 MB - qt5-qtbase-devel-5.15.9-7.el9.x86_64.rpm
MD5: c56ae5b86bd7255f73fd448388e3bf46
SHA-256: 856e95e2b437c87f5384b0194fff9a1ac5eb7e5634e5b876b90c1d76eb163648
Size: 3.11 MB - qt5-qtbase-examples-5.15.9-7.el9.i686.rpm
MD5: 89816b98340cde81733e77094c778ede
SHA-256: eb7622ee1bd12f35da88fd0ce8292a9209a183ddb14204303c313e53ccada906
Size: 5.48 MB - qt5-qtbase-examples-5.15.9-7.el9.x86_64.rpm
MD5: f9e428d5b9c8af20ebb0298bf5db4fd4
SHA-256: 50e9ddfdb7e5842fcf9bc4e7a93d9f5be5b8050d41305e2e26b7c5c24869139e
Size: 5.28 MB - qt5-qtbase-gui-5.15.9-7.el9.i686.rpm
MD5: 725974eaef262808e003d707e74f20de
SHA-256: 930d23bf2ec0c1384f48757d49521279a5c844ffbeb40ab58cd4e54c92b11080
Size: 7.07 MB - qt5-qtbase-gui-5.15.9-7.el9.x86_64.rpm
MD5: d9f8add95b0a84968bca9b7cdfa0e1c1
SHA-256: 4a2fa961d41ce58e284dd9f8daaefe0d0a067696df73a0a573f89f64f8718294
Size: 6.31 MB - qt5-qtbase-mysql-5.15.9-7.el9.i686.rpm
MD5: 9539894f2b5e71ac251ca3f96635f34f
SHA-256: c7966ebd717ee43954f73c51299cca85682c53935014ca3aa8b1256dc4c39fce
Size: 41.83 kB - qt5-qtbase-mysql-5.15.9-7.el9.x86_64.rpm
MD5: f7c2522c11f4f6d99b1f52dda57ba8f6
SHA-256: 23f0ab8abe0171527a13672a5a4d7812366d68964f41e2f48777fead52417983
Size: 38.44 kB - qt5-qtbase-odbc-5.15.9-7.el9.i686.rpm
MD5: 1459f18faa78cf50bb38df7841dfccb8
SHA-256: 38b3b6527d3b544fff38412df26f1cec495a248769c81e72e842b285fc8b3e9e
Size: 55.21 kB - qt5-qtbase-odbc-5.15.9-7.el9.x86_64.rpm
MD5: e0c76bb302e1b4c42390e551b299d181
SHA-256: b280e743851bc741cdfcd55155a8e48651fb767e07aaf8957883150a98ff9862
Size: 49.33 kB - qt5-qtbase-postgresql-5.15.9-7.el9.i686.rpm
MD5: 70dcfd5d5aec39318f29c3a4bacb46c8
SHA-256: 5c2b27f153b491a63a5739e52a860d95d7e8ebee0d7320d19483ffc764e58ccf
Size: 47.22 kB - qt5-qtbase-postgresql-5.15.9-7.el9.x86_64.rpm
MD5: 2c89b6898459063cc283cf93ed44a367
SHA-256: b1b30d277a48a4a6dea93e6d43a3ccc38328ec16a55c39851734c59692529f8b
Size: 43.18 kB - qt5-qtbase-private-devel-5.15.9-7.el9.i686.rpm
MD5: 4aec9346ea93c4b2b9358ab1da9e433d
SHA-256: b3a7c32ffd0c676ab597602976fde26987a965c80b2102b60b39402bf6d6d90b
Size: 935.12 kB - qt5-qtbase-private-devel-5.15.9-7.el9.x86_64.rpm
MD5: 61eb331c34469527db0388579392129f
SHA-256: 9ae247cd0814e1da8a04a1bbb2f4bf387d88ac95171496ad2764cc60b01f7108
Size: 935.15 kB - qt5-qtbase-static-5.15.9-7.el9.i686.rpm
MD5: 82a5d4ac82ada71e781492862a22738d
SHA-256: e6da28ed5234023666ab921d62eb24556f8b0a56beda481a456b3e2d2a62344e
Size: 856.15 kB - qt5-qtbase-static-5.15.9-7.el9.x86_64.rpm
MD5: d9bd910614ffd4dcf2ab84514b72339c
SHA-256: 0b73cd0660c4e6b9acbae59238e6dfc5e3795804c1c992585bfff46676330f19
Size: 789.49 kB