CVE-2022-25634Path Traversal in QT

CWE-22Path Traversal8 documents8 sources
Severity
7.5HIGHNVD
EPSS
0.5%
top 36.22%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMar 2
Latest updateSep 17

Description

Qt through 5.15.8 and 6.x through 6.2.3 can load system library files from an unintended working directory.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:NExploitability: 3.9 | Impact: 3.6

Affected Packages7 packages

Patches

🔴Vulnerability Details

2
GHSA
GHSA-33f2-544v-wh7x: Qt through 52022-03-03
OSV
CVE-2022-25634: Qt through 52022-03-02

📋Vendor Advisories

4
CISA ICS
​Siemens Software Center2023-08-10
Microsoft
Qt through 5.15.8 and 6.x through 6.2.3 can load system library files from an unintended working directory.2022-03-08
Red Hat
qt: allows loading of system library files from an unintended working directory.2022-03-02
Debian
CVE-2022-25634: qt6-base - Qt through 5.15.8 and 6.x through 6.2.3 can load system library files from an un...2022

🕵️Threat Intelligence

1
Dragos
OT Security Advisories2025-09-17
CVE-2022-25634 — Path Traversal in QT | cvebase