Vulnerability Details CVE-2015-9541
Qt through 5.14 allows an exponential XML entity expansion attack via a crafted SVG document that is mishandled in QXmlStreamReader, a related issue to CVE-2003-1564.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.01
EPSS Ranking 76.4%
CVSS Severity
CVSS v3 Score 7.5
CVSS v2 Score 5.0
Products affected by CVE-2015-9541
-
Qt
»
Qt
»
Version: 5.10.0
-
Qt
»
Qt
»
Version: 5.10.1
-
Qt
»
Qt
»
Version: 5.11.0
-
Qt
»
Qt
»
Version: 5.11.1
-
Qt
»
Qt
»
Version: 5.11.2
-
Qt
»
Qt
»
Version: 5.11.3
-
Qt
»
Qt
»
Version: 5.12.0
-
Qt
»
Qt
»
Version: 5.12.1
-
Qt
»
Qt
»
Version: 5.12.2
-
Qt
»
Qt
»
Version: 5.12.3
-
Qt
»
Qt
»
Version: 5.12.4
-
Qt
»
Qt
»
Version: 5.12.5
-
Qt
»
Qt
»
Version: 5.12.6
-
Qt
»
Qt
»
Version: 5.12.7
-
-
-
-
-
-
Qt
»
Qt
»
Version: 5.6.1-1
-
-
-
-
-
-
-
-
-
Qt
»
Qt
»
Version: 5.9.10
-
-
-
-
-
-
-
-
-
cpe:2.3:o:fedoraproject:fedora:31
-
cpe:2.3:o:fedoraproject:fedora:32