CVE-2020-12267 — Use After Free in QT
Severity
9.8CRITICALNVD
EPSS
0.5%
top 35.58%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedApr 27
Latest updateMay 24
Description
setMarkdown in Qt before 5.14.2 has a use-after-free related to QTextMarkdownImporter::insertBlock.
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HExploitability: 3.9 | Impact: 5.9
Affected Packages2 packages
Patches
🔴Vulnerability Details
1📋Vendor Advisories
2💬Community
8Bugzilla▶
CVE-2020-12267 qt3: qt: use-after-free related to QTextMarkdownImporter::insertBlock [fedora-all]↗2020-05-19
Bugzilla▶
CVE-2020-12267 qt5: qt: use-after-free related to QTextMarkdownImporter::insertBlock [fedora-all]↗2020-05-19
Bugzilla▶
CVE-2020-12267 qt5: qt: use-after-free related to QTextMarkdownImporter::insertBlock [fedora-all]↗2020-05-19
Bugzilla▶
CVE-2020-12267 qt: use-after-free related to QTextMarkdownImporter::insertBlock [fedora-all]↗2020-05-19