Integer overflow in Qt 3.3 before 3.3.7, 4.1 before 4.1.5, and 4.2 before 4.2.1, as used in the KDE khtml library, kdelibs 3.1.3, and possibly other packages, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted pixmap image.
2006-10-18T17:07:00.000
2025-04-09T00:30:58.490
Deferred
CVSSv2: 6.8 (MEDIUM)
AV:N/AC:M/Au:N/C:P/I:P/A:P
8.6
6.4
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | qt | qt | 3.3.0 | Yes |
Application | qt | qt | 3.3.1 | Yes |
Application | qt | qt | 3.3.2 | Yes |
Application | qt | qt | 3.3.3 | Yes |
Application | qt | qt | 3.3.4 | Yes |
Application | qt | qt | 3.3.5 | Yes |
Application | qt | qt | 3.3.6 | Yes |
Application | qt | qt | 4.1.0 | Yes |
Application | qt | qt | 4.1.1 | Yes |
Application | qt | qt | 4.1.2 | Yes |
Application | qt | qt | 4.1.3 | Yes |
Application | qt | qt | 4.1.4 | Yes |
Application | qt | qt | 4.2.0 | Yes |
Application | redhat | kdelibs | 3.1.3 | Yes |