Msrc Cbl2 Qt5-Qtbase 5.12.11-16 On Cbl Mariner 2.0 vulnerabilities
2 known vulnerabilities affecting msrc/cbl2_qt5-qtbase_5.12.11-16_on_cbl_mariner_2.0.
Total CVEs
2
CISA KEV
1
actively exploited
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH1MEDIUM1
Vulnerabilities
Page 1 of 1
CVE-2025-27363HIGHCVSS 8.1KEV2025-03-11
CVE-2025-27363 [HIGH] CWE-787 An out of bounds write exists in FreeType versions 2.13.0 and below (newer versions of FreeType are not vulnerable) when attempting to parse font subglyph structures related to TrueType GX and variabl
An out of bounds write exists in FreeType versions 2.13.0 and below (newer versions of FreeType are not vulnerable) when attempting to parse font subglyph structures related to TrueType GX and variable font files. The vulnerable code assigns a signed short value to an
msrc
CVE-2025-30348MEDIUMCVSS 5.82025-03-11
CVE-2025-30348 [MEDIUM] CWE-407 encodeText in QDom in Qt before 6.8.0 has a complex algorithm involving XML string copy and inline replacement of parts of a string (with relocation of later data).
encodeText in QDom in Qt before 6.8.0 has a complex algorithm involving XML string copy and inline replacement of parts of a string (with relocation of later data).
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulne
msrc