Searching trolltech software vulnerabilities


Multiple format string vulnerabilities in (1) q


Multiple format string vulnerabilities in (1) qtextedit.cpp, (2) qdatatable.cpp, (3) qsqldatabase.cpp, (4) qsqlindex.cpp, (5) qsqlrecord.cpp, (6) qglobal.cpp, and (7) qsvgdevice.cpp in QTextEdit in Trolltech Qt 3 before 3.3.8 Friday, July 27, 2007 allow remote attackers to execute arbitrary code via format string specifiers in text used to compose an error message.


Off-by-one error in the QUtf8Decoder::toUnicode


Off-by-one error in the QUtf8Decoder::toUnicode function in Trolltech Qt 3 allows context-dependent attackers to cause a denial of service (crash) via a crafted Unicode string that triggers a heap-based buffer overflow. NOTE: Qt 4 has the same error in the QUtf8Codec::convertToUnicode function, but it is not exploitable.


Software vulnerabilities results 1 to 3 of 3     
Page: 1