Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!
Bug 907119 (CVE-2023-32763) - <dev-qt/qtgui-5.15.9-r1: QTextLayout overflow with SVG images
Summary: <dev-qt/qtgui-5.15.9-r1: QTextLayout overflow with SVG images
Status: RESOLVED FIXED
Alias: CVE-2023-32763
Product: Gentoo Security
Classification: Unclassified
Component: Vulnerabilities (show other bugs)
Hardware: All Linux
: Normal normal (vote)
Assignee: Gentoo Security
URL: https://www.qt.io/blog/security-advis...
Whiteboard: A3 [glsa+]
Keywords:
Depends on: 907047 qt-5.15.10-stable
Blocks:
  Show dependency tree
 
Reported: 2023-05-25 03:32 UTC by Sam James
Modified: 2024-02-03 06:24 UTC (History)
2 users (show)

See Also:
Package list:
Runtime testing required: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Comment 1 Larry the Git Cow gentoo-dev 2023-07-13 08:42:21 UTC
The bug has been referenced in the following commit(s):

https://gitweb.gentoo.org/repo/gentoo.git/commit/?id=9b6222fecd6cbfa3039258f17ea82a02d0c4e46f

commit 9b6222fecd6cbfa3039258f17ea82a02d0c4e46f
Author:     Andreas Sturmlechner <asturm@gentoo.org>
AuthorDate: 2023-07-13 07:35:56 +0000
Commit:     Andreas Sturmlechner <asturm@gentoo.org>
CommitDate: 2023-07-13 08:42:03 +0000

    dev-qt/qtgui: drop 5.15.9
    
    Bug: https://bugs.gentoo.org/907119
    Signed-off-by: Andreas Sturmlechner <asturm@gentoo.org>

 dev-qt/qtgui/Manifest                              |   2 -
 .../qtgui/files/qtgui-5.15.9-CVE-2023-32763.patch  |  71 --------
 dev-qt/qtgui/qtgui-5.15.9-r1.ebuild                | 180 ---------------------
 dev-qt/qtgui/qtgui-5.15.9.ebuild                   | 178 --------------------
 4 files changed, 431 deletions(-)
Comment 2 Larry the Git Cow gentoo-dev 2024-02-03 06:23:31 UTC
The bug has been referenced in the following commit(s):

https://gitweb.gentoo.org/data/glsa.git/commit/?id=bf99e106687f9b6e6a78ef119c0842d716e4bf86

commit bf99e106687f9b6e6a78ef119c0842d716e4bf86
Author:     GLSAMaker <glsamaker@gentoo.org>
AuthorDate: 2024-02-03 06:19:26 +0000
Commit:     John Helmert III <ajak@gentoo.org>
CommitDate: 2024-02-03 06:23:18 +0000

    [ GLSA 202402-03 ] QtGui: Multiple Vulnerabilities
    
    Bug: https://bugs.gentoo.org/808531
    Bug: https://bugs.gentoo.org/907119
    Signed-off-by: GLSAMaker <glsamaker@gentoo.org>
    Signed-off-by: John Helmert III <ajak@gentoo.org>

 glsa-202402-03.xml | 44 ++++++++++++++++++++++++++++++++++++++++++++
 1 file changed, 44 insertions(+)