CVE-2017-10904: OS Command Injection
Published Dec 15, 2017
·Updated
Qt for Android prior to 5.9.0 allows remote attackers to execute arbitrary OS commands via unspecified vectors.
Affected Software
1 affected component
Qt Qt Android<5.9.0
Event History
Dec 15, 2017
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is CVE-2017-10904?
CVE-2017-10904 is a vulnerability in Qt for Android prior to version 5.9.0 that allows remote attackers to execute arbitrary OS commands.
2
How severe is the CVE-2017-10904 vulnerability?
The severity of CVE-2017-10904 is critical, with a severity value of 9.8.
3
How can remote attackers exploit CVE-2017-10904?
Remote attackers can exploit CVE-2017-10904 through unspecified vectors.
4
Which versions of Qt for Android are affected by CVE-2017-10904?
Qt for Android versions prior to 5.9.0 are affected by CVE-2017-10904.
5
How can I fix the CVE-2017-10904 vulnerability?
To fix the CVE-2017-10904 vulnerability, it is recommended to update Qt for Android to version 5.9.0 or higher.