USN-513-1: Qt vulnerability
18 September 2007
Qt vulnerability
Releases
Packages
Details
Dirk Mueller discovered that UTF8 strings could be made to cause a small
buffer overflow. A remote attacker could exploit this by sending specially
crafted strings to applications that use the Qt3 library for UTF8 processing,
potentially leading to arbitrary code execution with user privileges, or a
denial of service.
Update instructions
The problem can be corrected by updating your system to the following package versions:
Ubuntu 7.04
Ubuntu 6.10
Ubuntu 6.06
After a standard system upgrade you need to restart your session to
effect the necessary changes.