Bugzilla – Bug 1222120
VUL-0: CVE-2023-45935: libqt4,libqt5-qtbase,qt3,qt6-base: NULL pointer dereference via QXcbConnection::initializeAllAtoms()
Last modified: 2024-07-03 05:42:18 UTC
Qt 6 through 6.6 was discovered to contain a NULL pointer dereference via the function QXcbConnection::initializeAllAtoms(). NOTE: this is disputed because it is not expected that an X application should continue to run when there is arbitrary anomalous behavior from the X server. References: http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2023-45935 https://www.cve.org/CVERecord?id=CVE-2023-45935 http://seclists.org/fulldisclosure/2024/Jan/61 https://bugreports.qt.io/browse/QTBUG-115599
Probably relevant for all qt6-base versions.