CVE-2011-3194: Buffer Overflow
Published Jun 16, 2012
·Updated
Buffer overflow in the TIFF reader in gui/image/qtiffhandler.cpp in Qt 4.7.4 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via the TIFFTAGSAMPLESPERPIXEL tag in a greyscale TIFF image with multiple samples per pixel.
Affected Software
1 affected component
Qt QT=4.7.4
Event History
Jun 16, 2012
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2011-3194?
CVE-2011-3194 is considered a critical vulnerability that can lead to denial of service and potential arbitrary code execution.
2
How do I fix CVE-2011-3194?
To fix CVE-2011-3194, update to a version of Qt that is later than 4.7.4.
3
What types of attacks can exploit CVE-2011-3194?
CVE-2011-3194 can be exploited by crafting a malicious greyscale TIFF image with multiple samples per pixel.
4
Are there any known exploits for CVE-2011-3194?
Yes, there are known exploits that utilize specially crafted TIFF images to trigger the vulnerability in CVE-2011-3194.
5
Which software versions are affected by CVE-2011-3194?
CVE-2011-3194 affects Qt version 4.7.4 specifically.