CVE-2026-19395: An empty <img> attribute value in styled text triggers a parser error that halts the device.
In Qt for MCUs, a Text element that displays styled text halts the device if an <img> tag in the text contains an attribute with an empty value. The text parser passes the empty value to an internal check that only accepts non-empty values. The check fails and reports an error, and the default error handler halts the device.
Affected Software
Event History
Frequently Asked Questions
What must an attacker control to trigger the device halt?
An attacker would need to cause a Qt for MCUs Text element using styled text to parse an <img> tag containing an attribute with an empty value. The malformed styled-text content reaches an internal check that rejects empty values.
Is the halt caused by the default error-handling behavior?
Yes. The failed internal check reports an error, and the default error handler halts the device.
How can I identify potentially affected content?
Review styled-text strings rendered by Text elements for <img> tags whose attributes have empty values. Such tags can cause the parser error and resulting halt.