Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[qtbase] lacks fix for CVE-2023-38197 #32796

Closed
carsten-grimm-at-ipolog opened this issue Jul 28, 2023 · 0 comments · Fixed by #32797
Closed

[qtbase] lacks fix for CVE-2023-38197 #32796

carsten-grimm-at-ipolog opened this issue Jul 28, 2023 · 0 comments · Fixed by #32797
Assignees
Labels
category:port-feature The issue is with a library, which is requesting new capabilities that didn’t exist

Comments

@carsten-grimm-at-ipolog
Copy link
Contributor

Is your feature request related to a problem? Please describe.

  • Qt 6.5.2 is affected by CVE-2023-38197.
  • Qt provides a fix for this vulnerabilities that is not included in the port.
  • The patch for CVE-2023-38197 can be applied immediately to qtbase

Proposed solution

Describe alternatives you've considered

No response

Additional context

I will create a pull request with this proposed solution soon.

@carsten-grimm-at-ipolog carsten-grimm-at-ipolog added the category:port-feature The issue is with a library, which is requesting new capabilities that didn’t exist label Jul 28, 2023
@jimwang118 jimwang118 self-assigned this Jul 28, 2023
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
category:port-feature The issue is with a library, which is requesting new capabilities that didn’t exist
Projects
None yet
Development

Successfully merging a pull request may close this issue.

2 participants