First published: Mon Apr 27 2020(Updated: )
setMarkdown in Qt before 5.14.2 has a use-after-free related to QTextMarkdownImporter::insertBlock.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Qt Qt | =5.14.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2020-12267.
The severity of CVE-2020-12267 is critical (9.8).
CVE-2020-12267 affects Qt version 5.14.1.
CVE-2020-12267 is a use-after-free vulnerability related to QTextMarkdownImporter::insertBlock in Qt before version 5.14.2.
To mitigate CVE-2020-12267, update Qt to version 5.14.2 or later.