Bug 33269 - qt4-x11: Multiple security issues (3.2)
qt4-x11: Multiple security issues (3.2)
Status: CLOSED FIXED
Product: UCS
Classification: Unclassified
Component: Security updates
UCS 3.0
Other Linux
: P3 normal (vote)
: UCS 3.2-7-errata
Assigned To: Daniel Tröder
Janek Walkenhorst
:
Depends on:
Blocks:
  Show dependency treegraph
 
Reported: 2013-11-12 10:53 CET by Moritz Muehlenhoff
Modified: 2015-09-23 13:11 CEST (History)
2 users (show)

See Also:
What kind of report is it?: ---
What type of bug is this?: ---
Who will be affected by this bug?: ---
How will those affected feel about the bug?: ---
User Pain:
Enterprise Customer affected?:
School Customer affected?:
ISV affected?:
Waiting Support:
Flags outvoted (downgraded) after PO Review:
Ticket number:
Bug group (optional):
Max CVSS v3 score:
requate: Patch_Available+


Attachments
amd64_Packages.diff (66.44 KB, patch)
2015-09-14 18:53 CEST, Arvid Requate
Details | Diff

Note You need to log in before you can comment on or make changes to this bug.
Description Moritz Muehlenhoff univentionstaff 2013-11-12 10:53:39 CET
+++ This bug was initially created as a clone of Bug #29134 +++

Buffer overflow in Harfbuzz extension (CVE-2011-3193)

Buffer overflow in processing greyscale images (CVE-2011-3194)

Access to shared memory segments was insufficiently restricted, allowing local users to manipulate memory (CVE-2013-0254)
Comment 1 Moritz Muehlenhoff univentionstaff 2013-12-13 14:44:06 CET
Denial of service due to unlimited expansion of XML external attributes in the XML parser (CVE-2013-4549)
Comment 2 Moritz Muehlenhoff univentionstaff 2014-04-25 08:00:13 CEST
Denial of service in processing malformed GIF images (CVE-2014-0190)
Comment 3 Arvid Requate univentionstaff 2015-03-17 19:21:37 CET
Denial of service vulnerability in BMP images handler (CVE-2015-0295)
Comment 4 Arvid Requate univentionstaff 2015-04-27 17:05:11 CEST
Segmentation fault and potential remote code execution in Qt BPM handler (CVE-2015-1858)
Segmentation fault and potential remote code execution in Qt ICO handler (CVE-2015-1859)
Segmentation fault and potential remote code execution in Qt GIF handler (CVE-2015-1860)
Comment 5 Arvid Requate univentionstaff 2015-05-06 23:17:21 CEST
Fixed in upstream Debian package version 4:4.6.3-4+squeeze3:

CVE-2011-3193 CVE-2011-3194 CVE-2013-0254 CVE-2015-0295 CVE-2015-1858 CVE-2015-1859 CVE-2015-1860

The other issues above have been classified as "Minor issue" in Debian.
Comment 6 Daniel Tröder univentionstaff 2015-09-08 13:30:15 CEST
4:4.6.3-4+squeeze3 was imported and built to scope errata3.2-7.
YAML (r63510): 2015-09-08-qt4-x11.yaml
Comment 7 Arvid Requate univentionstaff 2015-09-14 18:53:43 CEST
Created attachment 7164 [details]
amd64_Packages.diff
Comment 8 Arvid Requate univentionstaff 2015-09-14 18:54:11 CEST
We always need to check that the packages are installable from amd64. In this case they probably weren't due to Bug 39262, see attachment above.
Comment 9 Janek Walkenhorst univentionstaff 2015-09-17 17:11:20 CEST
Advisory: OK
Tests (amd64, i386): OK
Comment 10 Janek Walkenhorst univentionstaff 2015-09-23 13:11:58 CEST
<http://errata.software-univention.de/ucs/3.2/369.html>