qt4: security restriction bypass
| Package(s): | qt4 |
CVE #(s): | CVE-2007-5965
|
| Created: | January 3, 2008 |
Updated: | February 21, 2008 |
| Description: |
Trolltech Qt has a privilege escalation vulnerability.
An error can be triggered in QSslSocket when verifying SSL certificates,
attackers can use this to bypass the SSL certificate verification
and acquire unauthorized access to a vulnerable application. |
| Alerts: |
| Ubuntu |
USN-579-1 |
qt4-x11 |
2008-02-20 |
| Mandriva |
MDVSA-2008:042 |
qt4 |
2008-02-07 |
| SuSE |
SUSE-SR:2008:002 |
tog-pegasus, xine, libxml2, libqt4, XFree86/X.Org, krb5, libexif, openafs, Apache, MozillaThunderbird, Xen |
2008-01-25 |
| Fedora |
FEDORA-2007-4285 |
qt4 |
2008-01-03 |
| Fedora |
FEDORA-2007-4354 |
qt4 |
2008-01-03 |
|