CVE-2018-19871Uncontrolled Resource Consumption in QT

Severity
6.5MEDIUMNVD
EPSS
0.7%
top 27.90%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 26
Latest updateMay 13

Description

An issue was discovered in Qt before 5.11.3. There is QTgaFile Uncontrolled Resource Consumption.

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:HExploitability: 2.8 | Impact: 3.6

Affected Packages3 packages

NVDqt/qt< 5.11.3
debiandebian/qtimageformats-opensource-src< qtimageformats-opensource-src 5.11.3-2 (bookworm)
NVDopensuse/leap15.0

Patches

🔴Vulnerability Details

2
GHSA
GHSA-8pvx-w36x-67cm: An issue was discovered in Qt before 52022-05-13
OSV
CVE-2018-19871: An issue was discovered in Qt before 52018-12-26

📋Vendor Advisories

2
Red Hat
qt5-qtimageformats: QTgaFile CPU exhaustion2018-08-24
Debian
CVE-2018-19871: qtimageformats-opensource-src - An issue was discovered in Qt before 5.11.3. There is QTgaFile Uncontrolled Reso...2018

💬Community

5
Bugzilla
CVE-2018-19871 mingw-qt5-qtimageformats: qt5-qtimageformats: QTgaFile CPU exhaustion [epel-7]2018-12-21
Bugzilla
CVE-2018-19871 qt5-qtimageformats: QTgaFile CPU exhaustion [epel-6]2018-12-21
Bugzilla
CVE-2018-19871 qt5-qtimageformats: QTgaFile CPU exhaustion [fedora-all]2018-12-21
Bugzilla
CVE-2018-19871 qt5-qtimageformats: QTgaFile CPU exhaustion2018-12-21
Bugzilla
CVE-2018-19871 mingw-qt5-qtimageformats: qt5-qtimageformats: QTgaFile CPU exhaustion [fedora-all]2018-12-21
CVE-2018-19871 — Uncontrolled Resource Consumption | cvebase