CVE-2021-38593

Severity CVSS v4.0:
Pending analysis
Type:
CWE-787 Out-of-bounds Write
Publication date:
12/08/2021
Last modified:
03/02/2024

Description

Qt 5.x before 5.15.6 and 6.x through 6.1.2 has an out-of-bounds write in QOutlineMapper::convertPath (called from QRasterPaintEngine::fill and QPaintEngineEx::stroke).

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:qt:qt:*:*:*:*:*:*:*:* 5.0.0 (including) 5.15.6 (excluding)
cpe:2.3:a:qt:qt:*:*:*:*:*:*:*:* 6.0.0 (including) 6.1.2 (including)
cpe:2.3:o:fedoraproject:fedora:35:*:*:*:*:*:*:*
cpe:2.3:o:fedoraproject:fedora:36:*:*:*:*:*:*:*