CVE-2021-28025: Integer Overflow
Published Aug 11, 2023
·Updated
Integer Overflow vulnerability in qsvghandler.cpp in Qt qtsvg versions 5.15.1, 6.0.0, 6.0.2, and 6.2, allows local attackers to cause a denial of service (DoS).
Affected Software
20 affected componentsFixes available
Qt QT=5.15.1
Qt QT=6.0.0
Qt QT=6.0.0-alpha1
Qt QT=6.0.0-beta1
Qt QT=6.0.0-beta2
Qt QT=6.0.0-beta3
Qt QT=6.0.0-beta4
Qt QT=6.0.0-beta5
Qt QT=6.0.0-rc1
Qt QT=6.0.0-rc2
Qt QT=6.0.2
Qt QT=6.2.0-alpha1
Qt QT=6.2.0-beta1
Qt QT=6.2.0-beta2
Qt QT=6.2.0-beta3
Qt QT=6.2.0-beta4
Qt QT=6.2.0-rc1
Qt QT=6.2.0-rc2
debian/qt6-svg
6.4.2-26.8.2-36.10.2-7
debian/qtsvg-opensource-src<=5.15.2-3
5.15.8-35.15.15-25.15.17-3
Event History
Aug 11, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·02:15 PM
DescriptionSeverityWeaknessAffected Software
May 28, 2026
Data Sourced
via Ubuntu·04:16 PM
RemedyDescriptionSeverityAffected Software
Data Sourced
via Launchpad·04:16 PM
Description
Data Sourced
via Debian·04:17 PM
DescriptionAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for this Qt qtsvg vulnerability?
The vulnerability ID for this Qt qtsvg vulnerability is CVE-2021-28025.
2
What is the severity of CVE-2021-28025?
The severity of CVE-2021-28025 is medium.
3
Which versions of Qt qtsvg are affected by CVE-2021-28025?
Versions 5.15.1, 6.0.0, 6.0.2, and 6.2 of Qt qtsvg are affected by CVE-2021-28025.
4
What is the impact of CVE-2021-28025?
CVE-2021-28025 allows local attackers to cause a denial of service (DoS).
5
Is there a fix or patch available for CVE-2021-28025?
Please refer to the official reference provided for information on available fixes or patches for CVE-2021-28025.