In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsUpgrade Debian:unstable
qt6-base
to version 6.8.2+dfsg-5 or higher.
Note: Versions mentioned in the description apply only to the upstream qt6-base
package and not the qt6-base
package as distributed by Debian
.
See How to fix?
for Debian:unstable
relevant fixed versions and status.
encodeText in QDom in Qt before 6.8.0 has a complex algorithm involving XML string copy and inline replacement of parts of a string (with relocation of later data).