qt-4.6.2-20.AXS4
エラータID: AXSA:2011-724:02
リリース日:
2011/12/29 Thursday - 11:09
題名:
qt-4.6.2-20.AXS4
影響のあるチャネル:
Asianux Server 4 for x86
Asianux Server 4 for x86_64
Severity:
High
Description:
Qt is a GUI software toolkit which simplifies the task of writing and maintaining GUI (Graphical User Interface) applications for the X Window System.
Qt is written in C++ and is fully object-oriented.
This package contains the shared library needed to run qt applications, as well as the README files for qt.
Security issues fixed with this release:
CVE-2011-3193
CVE-2011-3194
No information available at the time of writing, please refer to the CVE links below.
Fixed bugs:
- Fixed multiple flaws in Qt
- Fixed missing executable bit in qt-examples binaries
- Moved macros.qt4 to -devel
- Fixed rpmdiff failure
- Fixed Malayalam rakar not getting reordered
解決策:
Update packages.
CVE:
CVE-2011-3193
Heap-based buffer overflow in the Lookup_MarkMarkPos function in the HarfBuzz module (harfbuzz-gpos.c), as used by Qt before 4.7.4 and Pango, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted font file.
Heap-based buffer overflow in the Lookup_MarkMarkPos function in the HarfBuzz module (harfbuzz-gpos.c), as used by Qt before 4.7.4 and Pango, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted font file.
CVE-2011-3194
Buffer overflow in the TIFF reader in gui/image/qtiffhandler.cpp in Qt 4.7.4 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via the TIFFTAG_SAMPLESPERPIXEL tag in a greyscale TIFF image with multiple samples per pixel.
Buffer overflow in the TIFF reader in gui/image/qtiffhandler.cpp in Qt 4.7.4 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via the TIFFTAG_SAMPLESPERPIXEL tag in a greyscale TIFF image with multiple samples per pixel.
追加情報:
From Asianux Server 4 SP1.
ダウンロード:
SRPMS
- qt-4.6.2-20.AXS4.src.rpm
MD5: add87a9966bdc8aa7da0b107b6163c6a
SHA-256: 165758f590f083eac6bfaaa506298c317a9ff8793dbf8304c8d23849ed129fd4
Size: 152.84 MB
Asianux Server 4 for x86
- phonon-backend-gstreamer-4.6.2-20.AXS4.i686.rpm
MD5: 65b256ab1c2b5e90a6671e874cfddcc0
SHA-256: e007226d7b85fb9d8b5b5acab3b17320a2224aa57c77355a8fe827ad37c6b190
Size: 124.27 kB - qt-4.6.2-20.AXS4.i686.rpm
MD5: a3ab3f78c25ffe62c1fbed047ce3fc26
SHA-256: 0a6f02f56a170ab4283226b097980cd37d5cff02b31485ad775363cbddfdb5ca
Size: 4.08 MB - qt-devel-4.6.2-20.AXS4.i686.rpm
MD5: e019edd7db26e7e56498842f03e66c62
SHA-256: 9c06ea9d8b973752226025c2c439240f2877a3ea976de6c1efb7b68c04618c4b
Size: 9.87 MB - qt-doc-4.6.2-20.AXS4.noarch.rpm
MD5: 0d9f10e92d188cd1d0081ab8c4766149
SHA-256: ace8115cb4f059f832834e56336808033f7974a1ba55a9dd5090f8ca4d4a71f4
Size: 92.17 MB - qt-mysql-4.6.2-20.AXS4.i686.rpm
MD5: c01ba787b4882e2d81ab89665b0089b0
SHA-256: 8e7301f72895a0fea098f349251335b854c0689128593e0a67dff8ee6f21087b
Size: 56.95 kB - qt-odbc-4.6.2-20.AXS4.i686.rpm
MD5: 2e2ba31bebf26e01dc14f523ac95c945
SHA-256: 175c09cacc163f38c157dc98e84a4048c290394063a032dfb51bbee288c9cdcb
Size: 72.43 kB - qt-postgresql-4.6.2-20.AXS4.i686.rpm
MD5: 1d1fc515cf99daad3cceef257135ab4c
SHA-256: 7af656f1f287e7862905c529f8e18f2eea536f1aec92d62a7ed4a2fe982b6078
Size: 59.65 kB - qt-sqlite-4.6.2-20.AXS4.i686.rpm
MD5: c5315eca33b6cf9a67b323c9ccce906e
SHA-256: 57471ae9642bd008c9251eeb852e4d14d6e4eb443efe8b010793363e67f7630f
Size: 49.85 kB - qt-x11-4.6.2-20.AXS4.i686.rpm
MD5: ae0721292ccd7cdc7194be966a663a01
SHA-256: ffca99ae9ab67ad2e7e7a0d5bd433d35feeffeb791a30320643436cfedd607d3
Size: 12.27 MB
Asianux Server 4 for x86_64
- phonon-backend-gstreamer-4.6.2-20.AXS4.x86_64.rpm
MD5: ca8139f9648f75769560957a19c4230d
SHA-256: 2891809b3b4a312e4c9ff007a10bbf597906ccc91f20e92cce353486315de4ef
Size: 124.56 kB - qt-4.6.2-20.AXS4.x86_64.rpm
MD5: eb8152f3e59262af4528b1b9ea529f58
SHA-256: 39c6589f9df44c3cf8438b27e30664ec9d084b5553b39e54f26aeae35cfdd76c
Size: 4.01 MB - qt-devel-4.6.2-20.AXS4.x86_64.rpm
MD5: 7b7f80dbea47d6c545e2deeba8570df0
SHA-256: fea84893b4d3ac704365c0ca24e3af2d4239593d5e24d165786ca2e094ac487a
Size: 9.84 MB - qt-doc-4.6.2-20.AXS4.noarch.rpm
MD5: d3c1a11d35f384b6463666ee11282f42
SHA-256: aceb37c3b085dd82932d636a558f394fd6e96e49d9ffe3d2cca38a7095733c9b
Size: 92.16 MB - qt-mysql-4.6.2-20.AXS4.x86_64.rpm
MD5: 9d8c66bdcd587a3e3b3625597835585e
SHA-256: 6ac1a87b6d96ac621e42961b8aa4781d89256d099ab6a6810dcf298080725b01
Size: 56.85 kB - qt-odbc-4.6.2-20.AXS4.x86_64.rpm
MD5: daa67f607674883b225565c0988b6221
SHA-256: 06826c80daed3f52238df6df704dbb70654e08b542fe7a8bcc08d8734e51b90a
Size: 71.35 kB - qt-postgresql-4.6.2-20.AXS4.x86_64.rpm
MD5: a539e11775a547a7f981957f31531a17
SHA-256: e9dc8cde704738939fb3ce6689f9c679cea2efb78f6db4a22317cd2d5a8c34dc
Size: 59.13 kB - qt-sqlite-4.6.2-20.AXS4.x86_64.rpm
MD5: 03ee4c596ecfe34c33bf3289afc330ef
SHA-256: 855cc495f876de43e2989752d03713c84c1a17ad0e84629ab23c4e0f5f812a67
Size: 49.33 kB - qt-x11-4.6.2-20.AXS4.x86_64.rpm
MD5: 8b827c75169ee5fcb52411501daed634
SHA-256: f0f79f97b69263f1a7be06d92847aee1122c0ea22657a1ec21ba3ef538c0f516
Size: 12.12 MB - phonon-backend-gstreamer-4.6.2-20.AXS4.i686.rpm
MD5: 65b256ab1c2b5e90a6671e874cfddcc0
SHA-256: e007226d7b85fb9d8b5b5acab3b17320a2224aa57c77355a8fe827ad37c6b190
Size: 124.27 kB - qt-4.6.2-20.AXS4.i686.rpm
MD5: a3ab3f78c25ffe62c1fbed047ce3fc26
SHA-256: 0a6f02f56a170ab4283226b097980cd37d5cff02b31485ad775363cbddfdb5ca
Size: 4.08 MB - qt-devel-4.6.2-20.AXS4.i686.rpm
MD5: e019edd7db26e7e56498842f03e66c62
SHA-256: 9c06ea9d8b973752226025c2c439240f2877a3ea976de6c1efb7b68c04618c4b
Size: 9.87 MB - qt-mysql-4.6.2-20.AXS4.i686.rpm
MD5: c01ba787b4882e2d81ab89665b0089b0
SHA-256: 8e7301f72895a0fea098f349251335b854c0689128593e0a67dff8ee6f21087b
Size: 56.95 kB - qt-odbc-4.6.2-20.AXS4.i686.rpm
MD5: 2e2ba31bebf26e01dc14f523ac95c945
SHA-256: 175c09cacc163f38c157dc98e84a4048c290394063a032dfb51bbee288c9cdcb
Size: 72.43 kB - qt-postgresql-4.6.2-20.AXS4.i686.rpm
MD5: 1d1fc515cf99daad3cceef257135ab4c
SHA-256: 7af656f1f287e7862905c529f8e18f2eea536f1aec92d62a7ed4a2fe982b6078
Size: 59.65 kB - qt-sqlite-4.6.2-20.AXS4.i686.rpm
MD5: c5315eca33b6cf9a67b323c9ccce906e
SHA-256: 57471ae9642bd008c9251eeb852e4d14d6e4eb443efe8b010793363e67f7630f
Size: 49.85 kB - qt-x11-4.6.2-20.AXS4.i686.rpm
MD5: ae0721292ccd7cdc7194be966a663a01
SHA-256: ffca99ae9ab67ad2e7e7a0d5bd433d35feeffeb791a30320643436cfedd607d3
Size: 12.27 MB