Action not permitted
Modal body text goes here.
Modal Title
Modal Body
CVE-2015-9541 (GCVE-0-2015-9541)
Vulnerability from cvelistv5 – Published: 2020-01-24 21:53 – Updated: 2024-08-06 08:51- n/a
| URL | Tags |
|---|---|
| https://bugreports.qt.io/browse/QTBUG-47417 | x_refsource_MISC |
| https://lists.fedoraproject.org/archives/list/pac… | vendor-advisoryx_refsource_FEDORA |
| https://lists.fedoraproject.org/archives/list/pac… | vendor-advisoryx_refsource_FEDORA |
{
"containers": {
"adp": [
{
"providerMetadata": {
"dateUpdated": "2024-08-06T08:51:05.319Z",
"orgId": "af854a3a-2127-422b-91ae-364da2661108",
"shortName": "CVE"
},
"references": [
{
"tags": [
"x_refsource_MISC",
"x_transferred"
],
"url": "https://bugreports.qt.io/browse/QTBUG-47417"
},
{
"name": "FEDORA-2020-ca02c529f8",
"tags": [
"vendor-advisory",
"x_refsource_FEDORA",
"x_transferred"
],
"url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/2PT6327C64Q4RBFRWUSBKCG7SVGBWU5W/"
},
{
"name": "FEDORA-2020-3069e44be5",
"tags": [
"vendor-advisory",
"x_refsource_FEDORA",
"x_transferred"
],
"url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/EZMMF4OEJAZRVKVXNO7IZWLEZVQGJN6G/"
}
],
"title": "CVE Program Container"
}
],
"cna": {
"affected": [
{
"product": "n/a",
"vendor": "n/a",
"versions": [
{
"status": "affected",
"version": "n/a"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "Qt through 5.14 allows an exponential XML entity expansion attack via a crafted SVG document that is mishandled in QXmlStreamReader, a related issue to CVE-2003-1564."
}
],
"problemTypes": [
{
"descriptions": [
{
"description": "n/a",
"lang": "en",
"type": "text"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2020-04-25T06:06:13.000Z",
"orgId": "8254265b-2729-46b6-b9e3-3dfca2d5bfca",
"shortName": "mitre"
},
"references": [
{
"tags": [
"x_refsource_MISC"
],
"url": "https://bugreports.qt.io/browse/QTBUG-47417"
},
{
"name": "FEDORA-2020-ca02c529f8",
"tags": [
"vendor-advisory",
"x_refsource_FEDORA"
],
"url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/2PT6327C64Q4RBFRWUSBKCG7SVGBWU5W/"
},
{
"name": "FEDORA-2020-3069e44be5",
"tags": [
"vendor-advisory",
"x_refsource_FEDORA"
],
"url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/EZMMF4OEJAZRVKVXNO7IZWLEZVQGJN6G/"
}
],
"x_legacyV4Record": {
"CVE_data_meta": {
"ASSIGNER": "cve@mitre.org",
"ID": "CVE-2015-9541",
"STATE": "PUBLIC"
},
"affects": {
"vendor": {
"vendor_data": [
{
"product": {
"product_data": [
{
"product_name": "n/a",
"version": {
"version_data": [
{
"version_value": "n/a"
}
]
}
}
]
},
"vendor_name": "n/a"
}
]
}
},
"data_format": "MITRE",
"data_type": "CVE",
"data_version": "4.0",
"description": {
"description_data": [
{
"lang": "eng",
"value": "Qt through 5.14 allows an exponential XML entity expansion attack via a crafted SVG document that is mishandled in QXmlStreamReader, a related issue to CVE-2003-1564."
}
]
},
"problemtype": {
"problemtype_data": [
{
"description": [
{
"lang": "eng",
"value": "n/a"
}
]
}
]
},
"references": {
"reference_data": [
{
"name": "https://bugreports.qt.io/browse/QTBUG-47417",
"refsource": "MISC",
"url": "https://bugreports.qt.io/browse/QTBUG-47417"
},
{
"name": "FEDORA-2020-ca02c529f8",
"refsource": "FEDORA",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/2PT6327C64Q4RBFRWUSBKCG7SVGBWU5W/"
},
{
"name": "FEDORA-2020-3069e44be5",
"refsource": "FEDORA",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/EZMMF4OEJAZRVKVXNO7IZWLEZVQGJN6G/"
}
]
}
}
}
},
"cveMetadata": {
"assignerOrgId": "8254265b-2729-46b6-b9e3-3dfca2d5bfca",
"assignerShortName": "mitre",
"cveId": "CVE-2015-9541",
"datePublished": "2020-01-24T21:53:41.000Z",
"dateReserved": "2020-01-24T00:00:00.000Z",
"dateUpdated": "2024-08-06T08:51:05.319Z",
"state": "PUBLISHED"
},
"dataType": "CVE_RECORD",
"dataVersion": "5.1",
"vulnerability-lookup:meta": {
"epss": {
"cve": "CVE-2015-9541",
"date": "2026-10-04",
"epss": "0.02489",
"percentile": "0.84088"
},
"nvd": {
"cve": {
"affected": [
{
"affectedData": [
{
"product": "n/a",
"vendor": "n/a",
"versions": [
{
"status": "affected",
"version": "n/a"
}
]
}
],
"source": "cve@mitre.org"
}
],
"configurations": [
{
"nodes": [
{
"cpeMatch": [
{
"criteria": "cpe:2.3:a:qt:qt:*:*:*:*:*:*:*:*",
"matchCriteriaId": "33FEDE1F-1137-4635-8549-C355C9180288",
"versionEndExcluding": "5.12.8",
"versionStartIncluding": "5.5.0",
"vulnerable": true
}
],
"negate": false,
"operator": "OR"
}
]
},
{
"nodes": [
{
"cpeMatch": [
{
"criteria": "cpe:2.3:o:fedoraproject:fedora:31:*:*:*:*:*:*:*",
"matchCriteriaId": "80F0FA5D-8D3B-4C0E-81E2-87998286AF33",
"vulnerable": true
},
{
"criteria": "cpe:2.3:o:fedoraproject:fedora:32:*:*:*:*:*:*:*",
"matchCriteriaId": "36D96259-24BD-44E2-96D9-78CE1D41F956",
"vulnerable": true
}
],
"negate": false,
"operator": "OR"
}
]
}
],
"cveTags": [],
"descriptions": [
{
"lang": "en",
"value": "Qt through 5.14 allows an exponential XML entity expansion attack via a crafted SVG document that is mishandled in QXmlStreamReader, a related issue to CVE-2003-1564."
},
{
"lang": "es",
"value": "Qt versiones hasta 5.14, permite un ataque de expansi\u00f3n de entidad XML exponencial por medio de un documento SVG dise\u00f1ado que es manejado inapropiadamente en la funci\u00f3n QXmlStreamReader, un problema relacionado con el CVE-2003-1564."
}
],
"id": "CVE-2015-9541",
"lastModified": "2026-06-17T00:36:44.220",
"metrics": {
"cvssMetricV2": [
{
"acInsufInfo": false,
"baseSeverity": "MEDIUM",
"cvssData": {
"accessComplexity": "LOW",
"accessVector": "NETWORK",
"authentication": "NONE",
"availabilityImpact": "PARTIAL",
"baseScore": 5.0,
"confidentialityImpact": "NONE",
"integrityImpact": "NONE",
"vectorString": "AV:N/AC:L/Au:N/C:N/I:N/A:P",
"version": "2.0"
},
"exploitabilityScore": 10.0,
"impactScore": 2.9,
"obtainAllPrivilege": false,
"obtainOtherPrivilege": false,
"obtainUserPrivilege": false,
"source": "nvd@nist.gov",
"type": "Primary",
"userInteractionRequired": false
}
],
"cvssMetricV31": [
{
"cvssData": {
"attackComplexity": "LOW",
"attackVector": "NETWORK",
"availabilityImpact": "HIGH",
"baseScore": 7.5,
"baseSeverity": "HIGH",
"confidentialityImpact": "NONE",
"integrityImpact": "NONE",
"privilegesRequired": "NONE",
"scope": "UNCHANGED",
"userInteraction": "NONE",
"vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H",
"version": "3.1"
},
"exploitabilityScore": 3.9,
"impactScore": 3.6,
"source": "nvd@nist.gov",
"type": "Primary"
}
]
},
"published": "2020-01-24T22:15:12.880",
"references": [
{
"source": "cve@mitre.org",
"tags": [
"Vendor Advisory"
],
"url": "https://bugreports.qt.io/browse/QTBUG-47417"
},
{
"source": "cve@mitre.org",
"url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/2PT6327C64Q4RBFRWUSBKCG7SVGBWU5W/"
},
{
"source": "cve@mitre.org",
"url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/EZMMF4OEJAZRVKVXNO7IZWLEZVQGJN6G/"
},
{
"source": "af854a3a-2127-422b-91ae-364da2661108",
"tags": [
"Vendor Advisory"
],
"url": "https://bugreports.qt.io/browse/QTBUG-47417"
},
{
"source": "af854a3a-2127-422b-91ae-364da2661108",
"url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/2PT6327C64Q4RBFRWUSBKCG7SVGBWU5W/"
},
{
"source": "af854a3a-2127-422b-91ae-364da2661108",
"url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/EZMMF4OEJAZRVKVXNO7IZWLEZVQGJN6G/"
}
],
"sourceIdentifier": "cve@mitre.org",
"vulnStatus": "Modified",
"weaknesses": [
{
"description": [
{
"lang": "en",
"value": "CWE-776"
}
],
"source": "nvd@nist.gov",
"type": "Primary"
}
]
}
},
"redhat_vex": {
"aggregate_severity": "Moderate",
"current_release_date": "2026-06-27T08:05:47+00:00",
"cve": "CVE-2015-9541",
"id": "CVE-2015-9541",
"initial_release_date": "2015-07-24T00:00:00+00:00",
"product_status:fixed": "363",
"product_status:known_affected": "38",
"product_status:known_not_affected": "8",
"source": "Red Hat CSAF VEX",
"status": "final",
"title": "qt: XML entity expansion vulnerability",
"url": "https://security.access.redhat.com/data/csaf/v2/vex/2015/cve-2015-9541.json",
"version": "3"
}
}
}
ALSA-2020:4690
Vulnerability from osv_almalinux – Published: 2020-11-03 12:27 – Updated: 2021-08-11 08:54 – Source websiteQt is a software toolkit for developing applications. The qt5-base packages contain base tools for string, xml, and network handling in Qt.
Security Fix(es):
-
qt: XML entity expansion vulnerability (CVE-2015-9541)
-
qt5-qtwebsockets: websocket implementation allows only limited size for frames and messages therefore attacker can cause DOS (CVE-2018-21035)
-
qt: files placed by attacker can influence the working directory and lead to malicious code execution (CVE-2020-0569)
-
qt: files placed by attacker can influence the working directory and lead to malicious code execution (CVE-2020-0570)
-
qt5: incorrectly calls SSL_shutdown() in OpenSSL mid-handshake causing denial of service in TLS applications (CVE-2020-13962)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Additional Changes:
For detailed information on changes in this release, see the AlmaLinux Release Notes linked from the References section.
| URL | Type | |
|---|---|---|
{
"affected": [
{
"package": {
"ecosystem": "AlmaLinux:8",
"name": "qt5-qtbase-static"
},
"ranges": [
{
"events": [
{
"introduced": "0"
},
{
"fixed": "5.12.5-6.el8"
}
],
"type": "ECOSYSTEM"
}
]
},
{
"package": {
"ecosystem": "AlmaLinux:8",
"name": "qt5-qttools-static"
},
"ranges": [
{
"events": [
{
"introduced": "0"
},
{
"fixed": "5.12.5-2.el8"
}
],
"type": "ECOSYSTEM"
}
]
}
],
"details": "Qt is a software toolkit for developing applications. The qt5-base packages contain base tools for string, xml, and network handling in Qt. \n\nSecurity Fix(es):\n\n* qt: XML entity expansion vulnerability (CVE-2015-9541)\n\n* qt5-qtwebsockets: websocket implementation allows only limited size for frames and messages therefore attacker can cause DOS (CVE-2018-21035)\n\n* qt: files placed by attacker can influence the working directory and lead to malicious code execution (CVE-2020-0569)\n\n* qt: files placed by attacker can influence the working directory and lead to malicious code execution (CVE-2020-0570)\n\n* qt5: incorrectly calls SSL_shutdown() in OpenSSL mid-handshake causing denial of service in TLS applications (CVE-2020-13962)\n\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.\n\nAdditional Changes:\n\nFor detailed information on changes in this release, see the AlmaLinux Release Notes linked from the References section.",
"id": "ALSA-2020:4690",
"modified": "2021-08-11T08:54:00Z",
"published": "2020-11-03T12:27:18Z",
"references": [
{
"type": "REPORT",
"url": "https://vulners.com/cve/CVE-2015-9541"
},
{
"type": "REPORT",
"url": "https://vulners.com/cve/CVE-2018-21035"
},
{
"type": "REPORT",
"url": "https://vulners.com/cve/CVE-2020-0569"
},
{
"type": "REPORT",
"url": "https://vulners.com/cve/CVE-2020-0570"
},
{
"type": "REPORT",
"url": "https://vulners.com/cve/CVE-2020-13962"
}
],
"related": [
"CVE-2015-9541",
"CVE-2018-21035",
"CVE-2020-0569",
"CVE-2020-0570",
"CVE-2020-13962"
],
"summary": "Moderate: qt5-qtbase and qt5-qtwebsockets security and bug fix update"
}
BDU:2025-04906 (CVE-2015-9541)
Vulnerability from fstec – Published: 2025-04-24 – Updated: 2025-10-24 – View on bdu.fstec.ru Fixed- CWE-776 - Недостаточное ограничение рекурсивных ссылок на объекты в описаниях типа документа (TDT)
{
"CVSS 2.0": "AV:N/AC:L/Au:N/C:N/I:N/A:C",
"CVSS 3.0": "AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H",
"CVSS 4.0": null,
"remediation_\u0418\u0434\u0435\u043d\u0442\u0438\u0444\u0438\u043a\u0430\u0442\u043e\u0440": null,
"remediation_\u041d\u0430\u0438\u043c\u0435\u043d\u043e\u0432\u0430\u043d\u0438\u0435": null,
"\u0412\u0435\u043d\u0434\u043e\u0440 \u041f\u041e": "Red Hat, Inc., Canonical Ltd., \u0421\u043e\u043e\u0431\u0449\u0435\u0441\u0442\u0432\u043e \u0441\u0432\u043e\u0431\u043e\u0434\u043d\u043e\u0433\u043e \u043f\u0440\u043e\u0433\u0440\u0430\u043c\u043c\u043d\u043e\u0433\u043e \u043e\u0431\u0435\u0441\u043f\u0435\u0447\u0435\u043d\u0438\u044f, Fedora Project, \u0410\u041e \u00ab\u041d\u041f\u041f\u041a\u0422\u00bb, The Qt Company, \u041e\u041e\u041e \u00ab\u041e\u0442\u043a\u0440\u044b\u0442\u0430\u044f \u043c\u043e\u0431\u0438\u043b\u044c\u043d\u0430\u044f \u043f\u043b\u0430\u0442\u0444\u043e\u0440\u043c\u0430\u00bb",
"\u0412\u0435\u0440\u0441\u0438\u044f \u041f\u041e": "7 (Red Hat Enterprise Linux), 16.04 LTS (Ubuntu), 18.04 LTS (Ubuntu), 8 (Red Hat Enterprise Linux), 10 (Debian GNU/Linux), 31 (Fedora), 32 (Fedora), 20.04 LTS (Ubuntu), 11 (Debian GNU/Linux), 12 (Debian GNU/Linux), 22.04 LTS (Ubuntu), \u0434\u043e 2.6 (\u041e\u0421\u041e\u041d \u041e\u0421\u043d\u043e\u0432\u0430 \u041enyx), 24.04 LTS (Ubuntu), 24.10 (Ubuntu), \u0434\u043e 5.12.8 (Qt), \u0434\u043e 5.15.0 Beta2 (Qt), \u0434\u043e 5.1.4 \u0432\u043a\u043b\u044e\u0447\u0438\u0442\u0435\u043b\u044c\u043d\u043e (\u041e\u0421 \u0410\u0432\u0440\u043e\u0440\u0430)",
"\u0412\u043e\u0437\u043c\u043e\u0436\u043d\u044b\u0435 \u043c\u0435\u0440\u044b \u043f\u043e \u0443\u0441\u0442\u0440\u0430\u043d\u0435\u043d\u0438\u044e": "\u0412 \u0443\u0441\u043b\u043e\u0432\u0438\u044f\u0445 \u043e\u0442\u0441\u0443\u0442\u0441\u0442\u0432\u0438\u044f \u043e\u0431\u043d\u043e\u0432\u043b\u0435\u043d\u0438\u0439 \u0431\u0435\u0437\u043e\u043f\u0430\u0441\u043d\u043e\u0441\u0442\u0438 \u043e\u0442 \u043f\u0440\u043e\u0438\u0437\u0432\u043e\u0434\u0438\u0442\u0435\u043b\u044f \u0440\u0435\u043a\u043e\u043c\u0435\u043d\u0434\u0443\u0435\u0442\u0441\u044f \u043f\u0440\u0438\u0434\u0435\u0440\u0436\u0438\u0432\u0430\u0442\u044c\u0441\u044f \"\u0420\u0435\u043a\u043e\u043c\u0435\u043d\u0434\u0430\u0446\u0438\u0439 \u043f\u043e \u0431\u0435\u0437\u043e\u043f\u0430\u0441\u043d\u043e\u0439 \u043d\u0430\u0441\u0442\u0440\u043e\u0439\u043a\u0435 \u043e\u043f\u0435\u0440\u0430\u0446\u0438\u043e\u043d\u043d\u044b\u0445 \u0441\u0438\u0441\u0442\u0435\u043c LINUX\", \u0438\u0437\u043b\u043e\u0436\u0435\u043d\u043d\u044b\u0445 \u0432 \u043c\u0435\u0442\u043e\u0434\u0438\u0447\u0435\u0441\u043a\u043e\u043c \u0434\u043e\u043a\u0443\u043c\u0435\u043d\u0442\u0435 \u0424\u0421\u0422\u042d\u041a \u0420\u043e\u0441\u0441\u0438\u0438, \u0443\u0442\u0432\u0435\u0440\u0436\u0434\u0451\u043d\u043d\u043e\u043c 25 \u0434\u0435\u043a\u0430\u0431\u0440\u044f 2022 \u0433\u043e\u0434\u0430.\n\n\u0418\u0441\u043f\u043e\u043b\u044c\u0437\u043e\u0432\u0430\u043d\u0438\u0435 \u0440\u0435\u043a\u043e\u043c\u0435\u043d\u0434\u0430\u0446\u0438\u0439:\n\u0414\u043b\u044f Qt:\nhttps://bugreports.qt.io/browse/QTBUG-47417\n\n\u0414\u043b\u044f \u043f\u0440\u043e\u0433\u0440\u0430\u043c\u043c\u043d\u044b\u0445 \u043f\u0440\u043e\u0434\u0443\u043a\u0442\u043e\u0432 Red Hat Inc.:\nhttps://access.redhat.com/security/cve/cve-2015-9541\n\n\u0414\u043b\u044f Debian GNU/Linux:\nhttps://security-tracker.debian.org/tracker/CVE-2015-9541\n\n\u0414\u043b\u044f Ubuntu:\nhttps://ubuntu.com/security/CVE-2015-9541\n\n\u0414\u043b\u044f Fedora.:\nhttps://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/2PT6327C64Q4RBFRWUSBKCG7SVGBWU5W/\nhttps://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/EZMMF4OEJAZRVKVXNO7IZWLEZVQGJN6G/\n\n\u0414\u043b\u044f \u041e\u0421 \u0410\u0432\u0440\u043e\u0440\u0430: https://cve.omp.ru/bb27514\n\n\u041e\u0431\u043d\u043e\u0432\u043b\u0435\u043d\u0438\u0435 \u043f\u0440\u043e\u0433\u0440\u0430\u043c\u043c\u043d\u043e\u0433\u043e \u043e\u0431\u0435\u0441\u043f\u0435\u0447\u0435\u043d\u0438\u044f qtbase-opensource-src \u0434\u043e \u0432\u0435\u0440\u0441\u0438\u0438 5.11.3+dfsg1.repack-1+deb10u5.osnova1",
"\u0414\u0430\u0442\u0430 \u0432\u044b\u044f\u0432\u043b\u0435\u043d\u0438\u044f": "24.07.2015",
"\u0414\u0430\u0442\u0430 \u043f\u043e\u0441\u043b\u0435\u0434\u043d\u0435\u0433\u043e \u043e\u0431\u043d\u043e\u0432\u043b\u0435\u043d\u0438\u044f": "24.10.2025",
"\u0414\u0430\u0442\u0430 \u043f\u0443\u0431\u043b\u0438\u043a\u0430\u0446\u0438\u0438": "24.04.2025",
"\u0418\u0434\u0435\u043d\u0442\u0438\u0444\u0438\u043a\u0430\u0442\u043e\u0440": "BDU:2025-04906",
"\u0418\u0434\u0435\u043d\u0442\u0438\u0444\u0438\u043a\u0430\u0442\u043e\u0440\u044b \u0434\u0440\u0443\u0433\u0438\u0445 \u0441\u0438\u0441\u0442\u0435\u043c \u043e\u043f\u0438\u0441\u0430\u043d\u0438\u0439 \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u0438": "CVE-2015-9541",
"\u0418\u043d\u0444\u043e\u0440\u043c\u0430\u0446\u0438\u044f \u043e\u0431 \u0443\u0441\u0442\u0440\u0430\u043d\u0435\u043d\u0438\u0438": "\u0423\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044c \u0443\u0441\u0442\u0440\u0430\u043d\u0435\u043d\u0430",
"\u041a\u043b\u0430\u0441\u0441 \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u0438": "\u0423\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044c \u043a\u043e\u0434\u0430",
"\u041d\u0430\u0437\u0432\u0430\u043d\u0438\u0435 \u041f\u041e": "Red Hat Enterprise Linux, Ubuntu, Debian GNU/Linux, Fedora, \u041e\u0421\u041e\u041d \u041e\u0421\u043d\u043e\u0432\u0430 \u041enyx (\u0437\u0430\u043f\u0438\u0441\u044c \u0432 \u0435\u0434\u0438\u043d\u043e\u043c \u0440\u0435\u0435\u0441\u0442\u0440\u0435 \u0440\u043e\u0441\u0441\u0438\u0439\u0441\u043a\u0438\u0445 \u043f\u0440\u043e\u0433\u0440\u0430\u043c\u043c \u21165913), Qt, \u041e\u0421 \u0410\u0432\u0440\u043e\u0440\u0430 (\u0437\u0430\u043f\u0438\u0441\u044c \u0432 \u0435\u0434\u0438\u043d\u043e\u043c \u0440\u0435\u0435\u0441\u0442\u0440\u0435 \u0440\u043e\u0441\u0441\u0438\u0439\u0441\u043a\u0438\u0445 \u043f\u0440\u043e\u0433\u0440\u0430\u043c\u043c \u21161543)",
"\u041d\u0430\u0438\u043c\u0435\u043d\u043e\u0432\u0430\u043d\u0438\u0435 \u041e\u0421 \u0438 \u0442\u0438\u043f \u0430\u043f\u043f\u0430\u0440\u0430\u0442\u043d\u043e\u0439 \u043f\u043b\u0430\u0442\u0444\u043e\u0440\u043c\u044b": "Red Hat, Inc. Red Hat Enterprise Linux 7 , Canonical Ltd. Ubuntu 16.04 LTS , Canonical Ltd. Ubuntu 18.04 LTS , Red Hat, Inc. Red Hat Enterprise Linux 8 , \u0421\u043e\u043e\u0431\u0449\u0435\u0441\u0442\u0432\u043e \u0441\u0432\u043e\u0431\u043e\u0434\u043d\u043e\u0433\u043e \u043f\u0440\u043e\u0433\u0440\u0430\u043c\u043c\u043d\u043e\u0433\u043e \u043e\u0431\u0435\u0441\u043f\u0435\u0447\u0435\u043d\u0438\u044f Debian GNU/Linux 10 , Fedora Project Fedora 31 , Fedora Project Fedora 32 , Canonical Ltd. Ubuntu 20.04 LTS , \u0421\u043e\u043e\u0431\u0449\u0435\u0441\u0442\u0432\u043e \u0441\u0432\u043e\u0431\u043e\u0434\u043d\u043e\u0433\u043e \u043f\u0440\u043e\u0433\u0440\u0430\u043c\u043c\u043d\u043e\u0433\u043e \u043e\u0431\u0435\u0441\u043f\u0435\u0447\u0435\u043d\u0438\u044f Debian GNU/Linux 11 , \u0421\u043e\u043e\u0431\u0449\u0435\u0441\u0442\u0432\u043e \u0441\u0432\u043e\u0431\u043e\u0434\u043d\u043e\u0433\u043e \u043f\u0440\u043e\u0433\u0440\u0430\u043c\u043c\u043d\u043e\u0433\u043e \u043e\u0431\u0435\u0441\u043f\u0435\u0447\u0435\u043d\u0438\u044f Debian GNU/Linux 12 , Canonical Ltd. Ubuntu 22.04 LTS , \u0410\u041e \u00ab\u041d\u041f\u041f\u041a\u0422\u00bb \u041e\u0421\u041e\u041d \u041e\u0421\u043d\u043e\u0432\u0430 \u041enyx \u0434\u043e 2.6 (\u0437\u0430\u043f\u0438\u0441\u044c \u0432 \u0435\u0434\u0438\u043d\u043e\u043c \u0440\u0435\u0435\u0441\u0442\u0440\u0435 \u0440\u043e\u0441\u0441\u0438\u0439\u0441\u043a\u0438\u0445 \u043f\u0440\u043e\u0433\u0440\u0430\u043c\u043c \u21165913), Canonical Ltd. Ubuntu 24.04 LTS , Canonical Ltd. Ubuntu 24.10 , \u041e\u041e\u041e \u00ab\u041e\u0442\u043a\u0440\u044b\u0442\u0430\u044f \u043c\u043e\u0431\u0438\u043b\u044c\u043d\u0430\u044f \u043f\u043b\u0430\u0442\u0444\u043e\u0440\u043c\u0430\u00bb \u041e\u0421 \u0410\u0432\u0440\u043e\u0440\u0430 \u0434\u043e 5.1.4 \u0432\u043a\u043b\u044e\u0447\u0438\u0442\u0435\u043b\u044c\u043d\u043e (\u0437\u0430\u043f\u0438\u0441\u044c \u0432 \u0435\u0434\u0438\u043d\u043e\u043c \u0440\u0435\u0435\u0441\u0442\u0440\u0435 \u0440\u043e\u0441\u0441\u0438\u0439\u0441\u043a\u0438\u0445 \u043f\u0440\u043e\u0433\u0440\u0430\u043c\u043c \u21161543)",
"\u041d\u0430\u0438\u043c\u0435\u043d\u043e\u0432\u0430\u043d\u0438\u0435 \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u0438": "\u0423\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044c \u043a\u043b\u0430\u0441\u0441\u0430 QXmlStreamReader \u043a\u0440\u043e\u0441\u0441\u043f\u043b\u0430\u0442\u0444\u043e\u0440\u043c\u0435\u043d\u043d\u043e\u0433\u043e \u0444\u0440\u0435\u0439\u043c\u0432\u043e\u0440\u043a\u0430 \u0434\u043b\u044f \u0440\u0430\u0437\u0440\u0430\u0431\u043e\u0442\u043a\u0438 \u043f\u0440\u043e\u0433\u0440\u0430\u043c\u043c\u043d\u043e\u0433\u043e \u043e\u0431\u0435\u0441\u043f\u0435\u0447\u0435\u043d\u0438\u044f Qt, \u043f\u043e\u0437\u0432\u043e\u043b\u044f\u044e\u0449\u0430\u044f \u043d\u0430\u0440\u0443\u0448\u0438\u0442\u0435\u043b\u044e \u0432\u044b\u0437\u0432\u0430\u0442\u044c \u043e\u0442\u043a\u0430\u0437 \u0432 \u043e\u0431\u0441\u043b\u0443\u0436\u0438\u0432\u0430\u043d\u0438\u0438",
"\u041d\u0430\u043b\u0438\u0447\u0438\u0435 \u044d\u043a\u0441\u043f\u043b\u043e\u0439\u0442\u0430": "\u0414\u0430\u043d\u043d\u044b\u0435 \u0443\u0442\u043e\u0447\u043d\u044f\u044e\u0442\u0441\u044f",
"\u041e\u043f\u0438\u0441\u0430\u043d\u0438\u0435 \u043e\u0448\u0438\u0431\u043a\u0438 CWE": "\u041d\u0435\u0434\u043e\u0441\u0442\u0430\u0442\u043e\u0447\u043d\u043e\u0435 \u043e\u0433\u0440\u0430\u043d\u0438\u0447\u0435\u043d\u0438\u0435 \u0440\u0435\u043a\u0443\u0440\u0441\u0438\u0432\u043d\u044b\u0445 \u0441\u0441\u044b\u043b\u043e\u043a \u043d\u0430 \u043e\u0431\u044a\u0435\u043a\u0442\u044b \u0432 \u043e\u043f\u0438\u0441\u0430\u043d\u0438\u044f\u0445 \u0442\u0438\u043f\u0430 \u0434\u043e\u043a\u0443\u043c\u0435\u043d\u0442\u0430 (TDT) (CWE-776)",
"\u041e\u043f\u0438\u0441\u0430\u043d\u0438\u0435 \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u0438": "\u0423\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044c \u043a\u043b\u0430\u0441\u0441\u0430 QXmlStreamReader \u043a\u0440\u043e\u0441\u0441\u043f\u043b\u0430\u0442\u0444\u043e\u0440\u043c\u0435\u043d\u043d\u043e\u0433\u043e \u0444\u0440\u0435\u0439\u043c\u0432\u043e\u0440\u043a\u0430 \u0434\u043b\u044f \u0440\u0430\u0437\u0440\u0430\u0431\u043e\u0442\u043a\u0438 \u043f\u0440\u043e\u0433\u0440\u0430\u043c\u043c\u043d\u043e\u0433\u043e \u043e\u0431\u0435\u0441\u043f\u0435\u0447\u0435\u043d\u0438\u044f Qt \u0441\u0432\u044f\u0437\u0430\u043d\u0430 \u0441 \u043d\u0435\u043f\u0440\u0430\u0432\u0438\u043b\u044c\u043d\u044b\u043c \u043e\u0433\u0440\u0430\u043d\u0438\u0447\u0435\u043d\u0438\u0435\u043c \u0440\u0435\u043a\u0443\u0440\u0441\u0438\u0432\u043d\u044b\u0445 \u0441\u0441\u044b\u043b\u043e\u043a \u043d\u0430 \u0441\u0443\u0449\u043d\u043e\u0441\u0442\u0438 \u0432 DTD. \u042d\u043a\u0441\u043f\u043b\u0443\u0430\u0442\u0430\u0446\u0438\u044f \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u0438 \u043c\u043e\u0436\u0435\u0442 \u043f\u043e\u0437\u0432\u043e\u043b\u0438\u0442\u044c \u043d\u0430\u0440\u0443\u0448\u0438\u0442\u0435\u043b\u044e, \u0434\u0435\u0439\u0441\u0442\u0432\u0443\u044e\u0449\u0435\u043c\u0443 \u0443\u0434\u0430\u043b\u0435\u043d\u043d\u043e, \u0432\u044b\u0437\u0432\u0430\u0442\u044c \u043e\u0442\u043a\u0430\u0437 \u0432 \u043e\u0431\u0441\u043b\u0443\u0436\u0438\u0432\u0430\u043d\u0438\u0438",
"\u041f\u043e\u0441\u043b\u0435\u0434\u0441\u0442\u0432\u0438\u044f \u044d\u043a\u0441\u043f\u043b\u0443\u0430\u0442\u0430\u0446\u0438\u0438 \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u0438": null,
"\u041f\u0440\u043e\u0447\u0430\u044f \u0438\u043d\u0444\u043e\u0440\u043c\u0430\u0446\u0438\u044f": null,
"\u0421\u0432\u044f\u0437\u044c \u0441 \u0438\u043d\u0446\u0438\u0434\u0435\u043d\u0442\u0430\u043c\u0438 \u0418\u0411": "\u0414\u0430\u043d\u043d\u044b\u0435 \u0443\u0442\u043e\u0447\u043d\u044f\u044e\u0442\u0441\u044f",
"\u0421\u043e\u0441\u0442\u043e\u044f\u043d\u0438\u0435 \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u0438": "\u041e\u043f\u0443\u0431\u043b\u0438\u043a\u043e\u0432\u0430\u043d\u0430",
"\u0421\u043f\u043e\u0441\u043e\u0431 \u0443\u0441\u0442\u0440\u0430\u043d\u0435\u043d\u0438\u044f": "\u041e\u0431\u043d\u043e\u0432\u043b\u0435\u043d\u0438\u0435 \u043f\u0440\u043e\u0433\u0440\u0430\u043c\u043c\u043d\u043e\u0433\u043e \u043e\u0431\u0435\u0441\u043f\u0435\u0447\u0435\u043d\u0438\u044f",
"\u0421\u043f\u043e\u0441\u043e\u0431 \u044d\u043a\u0441\u043f\u043b\u0443\u0430\u0442\u0430\u0446\u0438\u0438": "\u041c\u0430\u043d\u0438\u043f\u0443\u043b\u0438\u0440\u043e\u0432\u0430\u043d\u0438\u0435 \u0441\u0442\u0440\u0443\u043a\u0442\u0443\u0440\u0430\u043c\u0438 \u0434\u0430\u043d\u043d\u044b\u0445",
"\u0421\u0441\u044b\u043b\u043a\u0438 \u043d\u0430 \u0438\u0441\u0442\u043e\u0447\u043d\u0438\u043a\u0438": "https://bugreports.qt.io/browse/QTBUG-47417\nhttps://access.redhat.com/security/cve/cve-2015-9541\nhttps://security-tracker.debian.org/tracker/CVE-2015-9541\nhttps://ubuntu.com/security/CVE-2015-9541\nhttps://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/2PT6327C64Q4RBFRWUSBKCG7SVGBWU5W/\nhttps://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/EZMMF4OEJAZRVKVXNO7IZWLEZVQGJN6G/\nhttps://cve.omp.ru/bb27514\nhttps://\u043f\u043e\u0434\u0434\u0435\u0440\u0436\u043a\u0430.\u043d\u043f\u043f\u043a\u0442.\u0440\u0444/bin/view/\u041e\u0421\u043d\u043e\u0432\u0430/\u041e\u0431\u043d\u043e\u0432\u043b\u0435\u043d\u0438\u044f/2.6/",
"\u0421\u0442\u0430\u0442\u0443\u0441 \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u0438": "\u041f\u043e\u0434\u0442\u0432\u0435\u0440\u0436\u0434\u0435\u043d\u0430 \u043f\u0440\u043e\u0438\u0437\u0432\u043e\u0434\u0438\u0442\u0435\u043b\u0435\u043c",
"\u0422\u0438\u043f \u041f\u041e": "\u041e\u043f\u0435\u0440\u0430\u0446\u0438\u043e\u043d\u043d\u0430\u044f \u0441\u0438\u0441\u0442\u0435\u043c\u0430, \u041f\u0440\u0438\u043a\u043b\u0430\u0434\u043d\u043e\u0435 \u041f\u041e \u0438\u043d\u0444\u043e\u0440\u043c\u0430\u0446\u0438\u043e\u043d\u043d\u044b\u0445 \u0441\u0438\u0441\u0442\u0435\u043c",
"\u0422\u0438\u043f \u043e\u0448\u0438\u0431\u043a\u0438 CWE": "CWE-776",
"\u0423\u0440\u043e\u0432\u0435\u043d\u044c \u043e\u043f\u0430\u0441\u043d\u043e\u0441\u0442\u0438 \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u0438": "\u0412\u044b\u0441\u043e\u043a\u0438\u0439 \u0443\u0440\u043e\u0432\u0435\u043d\u044c \u043e\u043f\u0430\u0441\u043d\u043e\u0441\u0442\u0438 (\u0431\u0430\u0437\u043e\u0432\u0430\u044f \u043e\u0446\u0435\u043d\u043a\u0430 CVSS 2.0 \u0441\u043e\u0441\u0442\u0430\u0432\u043b\u044f\u0435\u0442 7,8)\n\u0412\u044b\u0441\u043e\u043a\u0438\u0439 \u0443\u0440\u043e\u0432\u0435\u043d\u044c \u043e\u043f\u0430\u0441\u043d\u043e\u0441\u0442\u0438 (\u0431\u0430\u0437\u043e\u0432\u0430\u044f \u043e\u0446\u0435\u043d\u043a\u0430 CVSS 3.0 \u0441\u043e\u0441\u0442\u0430\u0432\u043b\u044f\u0435\u0442 7,5)"
}
EUVD-2026-96454
European Vulnerability Database identifier assigned by ENISA{
"assigner": "ENISA",
"date_reserved": "2026-10-02T06:25:47.550946+00:00",
"id": "EUVD-2026-96454"
}
FKIE_CVE-2015-9541
Vulnerability from fkie_nvd - Published: 2020-01-24 22:15 - Updated: 2026-06-17 00:36| Vendor | Product | Version | |
|---|---|---|---|
| qt | qt | * | |
| fedoraproject | fedora | 31 | |
| fedoraproject | fedora | 32 |
{
"affected": [
{
"affectedData": [
{
"product": "n/a",
"vendor": "n/a",
"versions": [
{
"status": "affected",
"version": "n/a"
}
]
}
],
"source": "cve@mitre.org"
}
],
"configurations": [
{
"nodes": [
{
"cpeMatch": [
{
"criteria": "cpe:2.3:a:qt:qt:*:*:*:*:*:*:*:*",
"matchCriteriaId": "33FEDE1F-1137-4635-8549-C355C9180288",
"versionEndExcluding": "5.12.8",
"versionStartIncluding": "5.5.0",
"vulnerable": true
}
],
"negate": false,
"operator": "OR"
}
]
},
{
"nodes": [
{
"cpeMatch": [
{
"criteria": "cpe:2.3:o:fedoraproject:fedora:31:*:*:*:*:*:*:*",
"matchCriteriaId": "80F0FA5D-8D3B-4C0E-81E2-87998286AF33",
"vulnerable": true
},
{
"criteria": "cpe:2.3:o:fedoraproject:fedora:32:*:*:*:*:*:*:*",
"matchCriteriaId": "36D96259-24BD-44E2-96D9-78CE1D41F956",
"vulnerable": true
}
],
"negate": false,
"operator": "OR"
}
]
}
],
"cveTags": [],
"descriptions": [
{
"lang": "en",
"value": "Qt through 5.14 allows an exponential XML entity expansion attack via a crafted SVG document that is mishandled in QXmlStreamReader, a related issue to CVE-2003-1564."
},
{
"lang": "es",
"value": "Qt versiones hasta 5.14, permite un ataque de expansi\u00f3n de entidad XML exponencial por medio de un documento SVG dise\u00f1ado que es manejado inapropiadamente en la funci\u00f3n QXmlStreamReader, un problema relacionado con el CVE-2003-1564."
}
],
"id": "CVE-2015-9541",
"lastModified": "2026-06-17T00:36:44.220",
"metrics": {
"cvssMetricV2": [
{
"acInsufInfo": false,
"baseSeverity": "MEDIUM",
"cvssData": {
"accessComplexity": "LOW",
"accessVector": "NETWORK",
"authentication": "NONE",
"availabilityImpact": "PARTIAL",
"baseScore": 5.0,
"confidentialityImpact": "NONE",
"integrityImpact": "NONE",
"vectorString": "AV:N/AC:L/Au:N/C:N/I:N/A:P",
"version": "2.0"
},
"exploitabilityScore": 10.0,
"impactScore": 2.9,
"obtainAllPrivilege": false,
"obtainOtherPrivilege": false,
"obtainUserPrivilege": false,
"source": "nvd@nist.gov",
"type": "Primary",
"userInteractionRequired": false
}
],
"cvssMetricV31": [
{
"cvssData": {
"attackComplexity": "LOW",
"attackVector": "NETWORK",
"availabilityImpact": "HIGH",
"baseScore": 7.5,
"baseSeverity": "HIGH",
"confidentialityImpact": "NONE",
"integrityImpact": "NONE",
"privilegesRequired": "NONE",
"scope": "UNCHANGED",
"userInteraction": "NONE",
"vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H",
"version": "3.1"
},
"exploitabilityScore": 3.9,
"impactScore": 3.6,
"source": "nvd@nist.gov",
"type": "Primary"
}
]
},
"published": "2020-01-24T22:15:12.880",
"references": [
{
"source": "cve@mitre.org",
"tags": [
"Vendor Advisory"
],
"url": "https://bugreports.qt.io/browse/QTBUG-47417"
},
{
"source": "cve@mitre.org",
"url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/2PT6327C64Q4RBFRWUSBKCG7SVGBWU5W/"
},
{
"source": "cve@mitre.org",
"url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/EZMMF4OEJAZRVKVXNO7IZWLEZVQGJN6G/"
},
{
"source": "af854a3a-2127-422b-91ae-364da2661108",
"tags": [
"Vendor Advisory"
],
"url": "https://bugreports.qt.io/browse/QTBUG-47417"
},
{
"source": "af854a3a-2127-422b-91ae-364da2661108",
"url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/2PT6327C64Q4RBFRWUSBKCG7SVGBWU5W/"
},
{
"source": "af854a3a-2127-422b-91ae-364da2661108",
"url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/EZMMF4OEJAZRVKVXNO7IZWLEZVQGJN6G/"
}
],
"sourceIdentifier": "cve@mitre.org",
"vulnStatus": "Modified",
"weaknesses": [
{
"description": [
{
"lang": "en",
"value": "CWE-776"
}
],
"source": "nvd@nist.gov",
"type": "Primary"
}
]
}
GHSA-H29V-8CC2-W88R
Vulnerability from github – Published: 2022-05-24 17:07 – Updated: 2024-04-04 02:46Qt through 5.14 allows an exponential XML entity expansion attack via a crafted SVG document that is mishandled in QXmlStreamReader, a related issue to CVE-2003-1564.
{
"affected": [],
"aliases": [
"CVE-2015-9541"
],
"database_specific": {
"cwe_ids": [
"CWE-776"
],
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2020-01-24T22:15:00Z",
"severity": "HIGH"
},
"details": "Qt through 5.14 allows an exponential XML entity expansion attack via a crafted SVG document that is mishandled in QXmlStreamReader, a related issue to CVE-2003-1564.",
"id": "GHSA-h29v-8cc2-w88r",
"modified": "2024-04-04T02:46:51Z",
"published": "2022-05-24T17:07:16Z",
"references": [
{
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2015-9541"
},
{
"type": "WEB",
"url": "https://bugreports.qt.io/browse/QTBUG-47417"
},
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/2PT6327C64Q4RBFRWUSBKCG7SVGBWU5W"
},
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/EZMMF4OEJAZRVKVXNO7IZWLEZVQGJN6G"
},
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/2PT6327C64Q4RBFRWUSBKCG7SVGBWU5W"
},
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/EZMMF4OEJAZRVKVXNO7IZWLEZVQGJN6G"
}
],
"schema_version": "1.4.0",
"severity": [
{
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H",
"type": "CVSS_V3"
}
]
}
GSD-2015-9541
Vulnerability from gsd - Updated: 2023-12-13 01:20{
"GSD": {
"alias": "CVE-2015-9541",
"description": "Qt through 5.14 allows an exponential XML entity expansion attack via a crafted SVG document that is mishandled in QXmlStreamReader, a related issue to CVE-2003-1564.",
"id": "GSD-2015-9541",
"references": [
"https://access.redhat.com/errata/RHSA-2020:4690",
"https://advisories.mageia.org/CVE-2015-9541.html",
"https://linux.oracle.com/cve/CVE-2015-9541.html"
]
},
"gsd": {
"metadata": {
"exploitCode": "unknown",
"remediation": "unknown",
"reportConfidence": "confirmed",
"type": "vulnerability"
},
"osvSchema": {
"aliases": [
"CVE-2015-9541"
],
"details": "Qt through 5.14 allows an exponential XML entity expansion attack via a crafted SVG document that is mishandled in QXmlStreamReader, a related issue to CVE-2003-1564.",
"id": "GSD-2015-9541",
"modified": "2023-12-13T01:20:02.499006Z",
"schema_version": "1.4.0"
}
},
"namespaces": {
"cve.org": {
"CVE_data_meta": {
"ASSIGNER": "cve@mitre.org",
"ID": "CVE-2015-9541",
"STATE": "PUBLIC"
},
"affects": {
"vendor": {
"vendor_data": [
{
"product": {
"product_data": [
{
"product_name": "n/a",
"version": {
"version_data": [
{
"version_value": "n/a"
}
]
}
}
]
},
"vendor_name": "n/a"
}
]
}
},
"data_format": "MITRE",
"data_type": "CVE",
"data_version": "4.0",
"description": {
"description_data": [
{
"lang": "eng",
"value": "Qt through 5.14 allows an exponential XML entity expansion attack via a crafted SVG document that is mishandled in QXmlStreamReader, a related issue to CVE-2003-1564."
}
]
},
"problemtype": {
"problemtype_data": [
{
"description": [
{
"lang": "eng",
"value": "n/a"
}
]
}
]
},
"references": {
"reference_data": [
{
"name": "https://bugreports.qt.io/browse/QTBUG-47417",
"refsource": "MISC",
"url": "https://bugreports.qt.io/browse/QTBUG-47417"
},
{
"name": "FEDORA-2020-ca02c529f8",
"refsource": "FEDORA",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/2PT6327C64Q4RBFRWUSBKCG7SVGBWU5W/"
},
{
"name": "FEDORA-2020-3069e44be5",
"refsource": "FEDORA",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/EZMMF4OEJAZRVKVXNO7IZWLEZVQGJN6G/"
}
]
}
},
"nvd.nist.gov": {
"configurations": {
"CVE_data_version": "4.0",
"nodes": [
{
"children": [],
"cpe_match": [
{
"cpe23Uri": "cpe:2.3:a:qt:qt:*:*:*:*:*:*:*:*",
"cpe_name": [],
"versionEndExcluding": "5.12.8",
"versionStartIncluding": "5.5.0",
"vulnerable": true
}
],
"operator": "OR"
},
{
"children": [],
"cpe_match": [
{
"cpe23Uri": "cpe:2.3:o:fedoraproject:fedora:31:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:o:fedoraproject:fedora:32:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
}
],
"operator": "OR"
}
]
},
"cve": {
"CVE_data_meta": {
"ASSIGNER": "cve@mitre.org",
"ID": "CVE-2015-9541"
},
"data_format": "MITRE",
"data_type": "CVE",
"data_version": "4.0",
"description": {
"description_data": [
{
"lang": "en",
"value": "Qt through 5.14 allows an exponential XML entity expansion attack via a crafted SVG document that is mishandled in QXmlStreamReader, a related issue to CVE-2003-1564."
}
]
},
"problemtype": {
"problemtype_data": [
{
"description": [
{
"lang": "en",
"value": "CWE-776"
}
]
}
]
},
"references": {
"reference_data": [
{
"name": "https://bugreports.qt.io/browse/QTBUG-47417",
"refsource": "MISC",
"tags": [
"Vendor Advisory"
],
"url": "https://bugreports.qt.io/browse/QTBUG-47417"
},
{
"name": "FEDORA-2020-ca02c529f8",
"refsource": "FEDORA",
"tags": [
"Third Party Advisory"
],
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/2PT6327C64Q4RBFRWUSBKCG7SVGBWU5W/"
},
{
"name": "FEDORA-2020-3069e44be5",
"refsource": "FEDORA",
"tags": [
"Third Party Advisory"
],
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/EZMMF4OEJAZRVKVXNO7IZWLEZVQGJN6G/"
}
]
}
},
"impact": {
"baseMetricV2": {
"acInsufInfo": false,
"cvssV2": {
"accessComplexity": "LOW",
"accessVector": "NETWORK",
"authentication": "NONE",
"availabilityImpact": "PARTIAL",
"baseScore": 5.0,
"confidentialityImpact": "NONE",
"integrityImpact": "NONE",
"vectorString": "AV:N/AC:L/Au:N/C:N/I:N/A:P",
"version": "2.0"
},
"exploitabilityScore": 10.0,
"impactScore": 2.9,
"obtainAllPrivilege": false,
"obtainOtherPrivilege": false,
"obtainUserPrivilege": false,
"severity": "MEDIUM",
"userInteractionRequired": false
},
"baseMetricV3": {
"cvssV3": {
"attackComplexity": "LOW",
"attackVector": "NETWORK",
"availabilityImpact": "HIGH",
"baseScore": 7.5,
"baseSeverity": "HIGH",
"confidentialityImpact": "NONE",
"integrityImpact": "NONE",
"privilegesRequired": "NONE",
"scope": "UNCHANGED",
"userInteraction": "NONE",
"vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H",
"version": "3.1"
},
"exploitabilityScore": 3.9,
"impactScore": 3.6
}
},
"lastModifiedDate": "2020-04-30T12:57Z",
"publishedDate": "2020-01-24T22:15Z"
}
}
}
MSRC_CVE-2015-9541
Vulnerability from csaf_microsoft - Published: 2021-07-30 00:00 - Updated: 2021-12-16 00:00RHSA-2020:4690
Vulnerability from csaf_opensuse - Published: 2020-11-04 01:33 - Updated: 2026-06-27 08:05An XML Entity Expansion flaw was found in the QT library. Applications that use QT to load untrusted images, for example, SVG images, or untrusted XML documents, may be vulnerable to this flaw. This flaw allows an attacker to cause a denial of service.
UBUNTU-CVE-2015-9541 (CVE-2015-9541)
Vulnerability from osv_ubuntu – Published: 2020-01-24 22:15 – Updated: 2026-04-22 07:37 – Source websiteQt through 5.14 allows an exponential XML entity expansion attack via a crafted SVG document that is mishandled in QXmlStreamReader, a related issue to CVE-2003-1564.
| URL | Type | |
|---|---|---|
{
"affected": [
{
"ecosystem_specific": {
"binaries": [
{
"binary_name": "libpyside-py3-1.2",
"binary_version": "1.2.1-4build1"
},
{
"binary_name": "libpyside1.2",
"binary_version": "1.2.1-4build1"
},
{
"binary_name": "python-pyside",
"binary_version": "1.2.1-4build1"
},
{
"binary_name": "python-pyside.phonon",
"binary_version": "1.2.1-4build1"
},
{
"binary_name": "python-pyside.qtcore",
"binary_version": "1.2.1-4build1"
},
{
"binary_name": "python-pyside.qtdeclarative",
"binary_version": "1.2.1-4build1"
},
{
"binary_name": "python-pyside.qtgui",
"binary_version": "1.2.1-4build1"
},
{
"binary_name": "python-pyside.qthelp",
"binary_version": "1.2.1-4build1"
},
{
"binary_name": "python-pyside.qtnetwork",
"binary_version": "1.2.1-4build1"
},
{
"binary_name": "python-pyside.qtopengl",
"binary_version": "1.2.1-4build1"
},
{
"binary_name": "python-pyside.qtscript",
"binary_version": "1.2.1-4build1"
},
{
"binary_name": "python-pyside.qtsql",
"binary_version": "1.2.1-4build1"
},
{
"binary_name": "python-pyside.qtsvg",
"binary_version": "1.2.1-4build1"
},
{
"binary_name": "python-pyside.qttest",
"binary_version": "1.2.1-4build1"
},
{
"binary_name": "python-pyside.qtuitools",
"binary_version": "1.2.1-4build1"
},
{
"binary_name": "python-pyside.qtwebkit",
"binary_version": "1.2.1-4build1"
},
{
"binary_name": "python-pyside.qtxml",
"binary_version": "1.2.1-4build1"
},
{
"binary_name": "python3-pyside",
"binary_version": "1.2.1-4build1"
},
{
"binary_name": "python3-pyside.phonon",
"binary_version": "1.2.1-4build1"
},
{
"binary_name": "python3-pyside.qtcore",
"binary_version": "1.2.1-4build1"
},
{
"binary_name": "python3-pyside.qtdeclarative",
"binary_version": "1.2.1-4build1"
},
{
"binary_name": "python3-pyside.qtgui",
"binary_version": "1.2.1-4build1"
},
{
"binary_name": "python3-pyside.qthelp",
"binary_version": "1.2.1-4build1"
},
{
"binary_name": "python3-pyside.qtnetwork",
"binary_version": "1.2.1-4build1"
},
{
"binary_name": "python3-pyside.qtopengl",
"binary_version": "1.2.1-4build1"
},
{
"binary_name": "python3-pyside.qtscript",
"binary_version": "1.2.1-4build1"
},
{
"binary_name": "python3-pyside.qtsql",
"binary_version": "1.2.1-4build1"
},
{
"binary_name": "python3-pyside.qtsvg",
"binary_version": "1.2.1-4build1"
},
{
"binary_name": "python3-pyside.qttest",
"binary_version": "1.2.1-4build1"
},
{
"binary_name": "python3-pyside.qtuitools",
"binary_version": "1.2.1-4build1"
},
{
"binary_name": "python3-pyside.qtwebkit",
"binary_version": "1.2.1-4build1"
},
{
"binary_name": "python3-pyside.qtxml",
"binary_version": "1.2.1-4build1"
}
]
},
"package": {
"ecosystem": "Ubuntu:14.04:LTS",
"name": "pyside",
"purl": "pkg:deb/ubuntu/pyside@1.2.1-4build1?arch=source\u0026distro=trusty"
},
"ranges": [
{
"events": [
{
"introduced": "0"
}
],
"type": "ECOSYSTEM"
}
],
"versions": [
"1.1.2-4",
"1.2.1-1",
"1.2.1-1build1",
"1.2.1-2",
"1.2.1-4",
"1.2.1-4build1"
]
},
{
"ecosystem_specific": {
"binaries": [
{
"binary_name": "libqt4-assistant",
"binary_version": "4:4.8.5+git192-g085f851+dfsg-2ubuntu4.1"
},
{
"binary_name": "libqt4-core",
"binary_version": "4:4.8.5+git192-g085f851+dfsg-2ubuntu4.1"
},
{
"binary_name": "libqt4-dbus",
"binary_version": "4:4.8.5+git192-g085f851+dfsg-2ubuntu4.1"
},
{
"binary_name": "libqt4-declarative",
"binary_version": "4:4.8.5+git192-g085f851+dfsg-2ubuntu4.1"
},
{
"binary_name": "libqt4-declarative-folderlistmodel",
"binary_version": "4:4.8.5+git192-g085f851+dfsg-2ubuntu4.1"
},
{
"binary_name": "libqt4-declarative-gestures",
"binary_version": "4:4.8.5+git192-g085f851+dfsg-2ubuntu4.1"
},
{
"binary_name": "libqt4-declarative-particles",
"binary_version": "4:4.8.5+git192-g085f851+dfsg-2ubuntu4.1"
},
{
"binary_name": "libqt4-declarative-shaders",
"binary_version": "4:4.8.5+git192-g085f851+dfsg-2ubuntu4.1"
},
{
"binary_name": "libqt4-designer",
"binary_version": "4:4.8.5+git192-g085f851+dfsg-2ubuntu4.1"
},
{
"binary_name": "libqt4-dev-bin",
"binary_version": "4:4.8.5+git192-g085f851+dfsg-2ubuntu4.1"
},
{
"binary_name": "libqt4-gui",
"binary_version": "4:4.8.5+git192-g085f851+dfsg-2ubuntu4.1"
},
{
"binary_name": "libqt4-help",
"binary_version": "4:4.8.5+git192-g085f851+dfsg-2ubuntu4.1"
},
{
"binary_name": "libqt4-network",
"binary_version": "4:4.8.5+git192-g085f851+dfsg-2ubuntu4.1"
},
{
"binary_name": "libqt4-opengl",
"binary_version": "4:4.8.5+git192-g085f851+dfsg-2ubuntu4.1"
},
{
"binary_name": "libqt4-qt3support",
"binary_version": "4:4.8.5+git192-g085f851+dfsg-2ubuntu4.1"
},
{
"binary_name": "libqt4-script",
"binary_version": "4:4.8.5+git192-g085f851+dfsg-2ubuntu4.1"
},
{
"binary_name": "libqt4-scripttools",
"binary_version": "4:4.8.5+git192-g085f851+dfsg-2ubuntu4.1"
},
{
"binary_name": "libqt4-sql",
"binary_version": "4:4.8.5+git192-g085f851+dfsg-2ubuntu4.1"
},
{
"binary_name": "libqt4-sql-mysql",
"binary_version": "4:4.8.5+git192-g085f851+dfsg-2ubuntu4.1"
},
{
"binary_name": "libqt4-sql-odbc",
"binary_version": "4:4.8.5+git192-g085f851+dfsg-2ubuntu4.1"
},
{
"binary_name": "libqt4-sql-psql",
"binary_version": "4:4.8.5+git192-g085f851+dfsg-2ubuntu4.1"
},
{
"binary_name": "libqt4-sql-sqlite",
"binary_version": "4:4.8.5+git192-g085f851+dfsg-2ubuntu4.1"
},
{
"binary_name": "libqt4-sql-tds",
"binary_version": "4:4.8.5+git192-g085f851+dfsg-2ubuntu4.1"
},
{
"binary_name": "libqt4-svg",
"binary_version": "4:4.8.5+git192-g085f851+dfsg-2ubuntu4.1"
},
{
"binary_name": "libqt4-test",
"binary_version": "4:4.8.5+git192-g085f851+dfsg-2ubuntu4.1"
},
{
"binary_name": "libqt4-webkit",
"binary_version": "4:4.8.5+git192-g085f851+dfsg-2ubuntu4.1"
},
{
"binary_name": "libqt4-xml",
"binary_version": "4:4.8.5+git192-g085f851+dfsg-2ubuntu4.1"
},
{
"binary_name": "libqt4-xmlpatterns",
"binary_version": "4:4.8.5+git192-g085f851+dfsg-2ubuntu4.1"
},
{
"binary_name": "libqtcore4",
"binary_version": "4:4.8.5+git192-g085f851+dfsg-2ubuntu4.1"
},
{
"binary_name": "libqtdbus4",
"binary_version": "4:4.8.5+git192-g085f851+dfsg-2ubuntu4.1"
},
{
"binary_name": "libqtgui4",
"binary_version": "4:4.8.5+git192-g085f851+dfsg-2ubuntu4.1"
},
{
"binary_name": "qdbus",
"binary_version": "4:4.8.5+git192-g085f851+dfsg-2ubuntu4.1"
},
{
"binary_name": "qt4-default",
"binary_version": "4:4.8.5+git192-g085f851+dfsg-2ubuntu4.1"
},
{
"binary_name": "qt4-demos",
"binary_version": "4:4.8.5+git192-g085f851+dfsg-2ubuntu4.1"
},
{
"binary_name": "qt4-designer",
"binary_version": "4:4.8.5+git192-g085f851+dfsg-2ubuntu4.1"
},
{
"binary_name": "qt4-dev-tools",
"binary_version": "4:4.8.5+git192-g085f851+dfsg-2ubuntu4.1"
},
{
"binary_name": "qt4-doc-html",
"binary_version": "4:4.8.5+git192-g085f851+dfsg-2ubuntu4.1"
},
{
"binary_name": "qt4-linguist-tools",
"binary_version": "4:4.8.5+git192-g085f851+dfsg-2ubuntu4.1"
},
{
"binary_name": "qt4-qmake",
"binary_version": "4:4.8.5+git192-g085f851+dfsg-2ubuntu4.1"
},
{
"binary_name": "qt4-qmlviewer",
"binary_version": "4:4.8.5+git192-g085f851+dfsg-2ubuntu4.1"
},
{
"binary_name": "qt4-qtconfig",
"binary_version": "4:4.8.5+git192-g085f851+dfsg-2ubuntu4.1"
},
{
"binary_name": "qtcore4-l10n",
"binary_version": "4:4.8.5+git192-g085f851+dfsg-2ubuntu4.1"
}
]
},
"package": {
"ecosystem": "Ubuntu:14.04:LTS",
"name": "qt4-x11",
"purl": "pkg:deb/ubuntu/qt4-x11@4:4.8.5+git192-g085f851+dfsg-2ubuntu4.1?arch=source\u0026distro=trusty"
},
"ranges": [
{
"events": [
{
"introduced": "0"
}
],
"type": "ECOSYSTEM"
}
],
"versions": [
"4:4.8.4+dfsg-0ubuntu18",
"4:4.8.4+dfsg-0ubuntu19",
"4:4.8.4+dfsg-0ubuntu20",
"4:4.8.4+dfsg-0ubuntu21",
"4:4.8.4+dfsg-0ubuntu22",
"4:4.8.5+git192-g085f851+dfsg-2ubuntu3",
"4:4.8.5+git192-g085f851+dfsg-2ubuntu4",
"4:4.8.5+git192-g085f851+dfsg-2ubuntu4.1"
]
},
{
"ecosystem_specific": {
"binaries": [
{
"binary_name": "libqt4-dbus",
"binary_version": "4:4.8.7+dfsg-5ubuntu2"
},
{
"binary_name": "libqt4-declarative",
"binary_version": "4:4.8.7+dfsg-5ubuntu2"
},
{
"binary_name": "libqt4-declarative-folderlistmodel",
"binary_version": "4:4.8.7+dfsg-5ubuntu2"
},
{
"binary_name": "libqt4-declarative-gestures",
"binary_version": "4:4.8.7+dfsg-5ubuntu2"
},
{
"binary_name": "libqt4-declarative-particles",
"binary_version": "4:4.8.7+dfsg-5ubuntu2"
},
{
"binary_name": "libqt4-declarative-shaders",
"binary_version": "4:4.8.7+dfsg-5ubuntu2"
},
{
"binary_name": "libqt4-designer",
"binary_version": "4:4.8.7+dfsg-5ubuntu2"
},
{
"binary_name": "libqt4-dev-bin",
"binary_version": "4:4.8.7+dfsg-5ubuntu2"
},
{
"binary_name": "libqt4-help",
"binary_version": "4:4.8.7+dfsg-5ubuntu2"
},
{
"binary_name": "libqt4-network",
"binary_version": "4:4.8.7+dfsg-5ubuntu2"
},
{
"binary_name": "libqt4-opengl",
"binary_version": "4:4.8.7+dfsg-5ubuntu2"
},
{
"binary_name": "libqt4-qt3support",
"binary_version": "4:4.8.7+dfsg-5ubuntu2"
},
{
"binary_name": "libqt4-script",
"binary_version": "4:4.8.7+dfsg-5ubuntu2"
},
{
"binary_name": "libqt4-scripttools",
"binary_version": "4:4.8.7+dfsg-5ubuntu2"
},
{
"binary_name": "libqt4-sql",
"binary_version": "4:4.8.7+dfsg-5ubuntu2"
},
{
"binary_name": "libqt4-sql-mysql",
"binary_version": "4:4.8.7+dfsg-5ubuntu2"
},
{
"binary_name": "libqt4-sql-odbc",
"binary_version": "4:4.8.7+dfsg-5ubuntu2"
},
{
"binary_name": "libqt4-sql-psql",
"binary_version": "4:4.8.7+dfsg-5ubuntu2"
},
{
"binary_name": "libqt4-sql-sqlite",
"binary_version": "4:4.8.7+dfsg-5ubuntu2"
},
{
"binary_name": "libqt4-sql-tds",
"binary_version": "4:4.8.7+dfsg-5ubuntu2"
},
{
"binary_name": "libqt4-svg",
"binary_version": "4:4.8.7+dfsg-5ubuntu2"
},
{
"binary_name": "libqt4-test",
"binary_version": "4:4.8.7+dfsg-5ubuntu2"
},
{
"binary_name": "libqt4-xml",
"binary_version": "4:4.8.7+dfsg-5ubuntu2"
},
{
"binary_name": "libqt4-xmlpatterns",
"binary_version": "4:4.8.7+dfsg-5ubuntu2"
},
{
"binary_name": "libqtcore4",
"binary_version": "4:4.8.7+dfsg-5ubuntu2"
},
{
"binary_name": "libqtdbus4",
"binary_version": "4:4.8.7+dfsg-5ubuntu2"
},
{
"binary_name": "libqtgui4",
"binary_version": "4:4.8.7+dfsg-5ubuntu2"
},
{
"binary_name": "qdbus",
"binary_version": "4:4.8.7+dfsg-5ubuntu2"
},
{
"binary_name": "qt4-default",
"binary_version": "4:4.8.7+dfsg-5ubuntu2"
},
{
"binary_name": "qt4-demos",
"binary_version": "4:4.8.7+dfsg-5ubuntu2"
},
{
"binary_name": "qt4-designer",
"binary_version": "4:4.8.7+dfsg-5ubuntu2"
},
{
"binary_name": "qt4-dev-tools",
"binary_version": "4:4.8.7+dfsg-5ubuntu2"
},
{
"binary_name": "qt4-doc-html",
"binary_version": "4:4.8.7+dfsg-5ubuntu2"
},
{
"binary_name": "qt4-linguist-tools",
"binary_version": "4:4.8.7+dfsg-5ubuntu2"
},
{
"binary_name": "qt4-qmake",
"binary_version": "4:4.8.7+dfsg-5ubuntu2"
},
{
"binary_name": "qt4-qmlviewer",
"binary_version": "4:4.8.7+dfsg-5ubuntu2"
},
{
"binary_name": "qt4-qtconfig",
"binary_version": "4:4.8.7+dfsg-5ubuntu2"
},
{
"binary_name": "qtcore4-l10n",
"binary_version": "4:4.8.7+dfsg-5ubuntu2"
}
]
},
"package": {
"ecosystem": "Ubuntu:16.04:LTS",
"name": "qt4-x11",
"purl": "pkg:deb/ubuntu/qt4-x11@4:4.8.7+dfsg-5ubuntu2?arch=source\u0026distro=xenial"
},
"ranges": [
{
"events": [
{
"introduced": "0"
}
],
"type": "ECOSYSTEM"
}
],
"versions": [
"4:4.8.6+git64-g5dc8b2b+dfsg-3~ubuntu8",
"4:4.8.7+dfsg-5ubuntu1",
"4:4.8.7+dfsg-5ubuntu2"
]
},
{
"ecosystem_specific": {
"binaries": [
{
"binary_name": "libqt5concurrent5",
"binary_version": "5.5.1+dfsg-16ubuntu7.7+esm2"
},
{
"binary_name": "libqt5core5a",
"binary_version": "5.5.1+dfsg-16ubuntu7.7+esm2"
},
{
"binary_name": "libqt5dbus5",
"binary_version": "5.5.1+dfsg-16ubuntu7.7+esm2"
},
{
"binary_name": "libqt5gui5",
"binary_version": "5.5.1+dfsg-16ubuntu7.7+esm2"
},
{
"binary_name": "libqt5libqgtk2",
"binary_version": "5.5.1+dfsg-16ubuntu7.7+esm2"
},
{
"binary_name": "libqt5network5",
"binary_version": "5.5.1+dfsg-16ubuntu7.7+esm2"
},
{
"binary_name": "libqt5opengl5",
"binary_version": "5.5.1+dfsg-16ubuntu7.7+esm2"
},
{
"binary_name": "libqt5printsupport5",
"binary_version": "5.5.1+dfsg-16ubuntu7.7+esm2"
},
{
"binary_name": "libqt5sql5",
"binary_version": "5.5.1+dfsg-16ubuntu7.7+esm2"
},
{
"binary_name": "libqt5sql5-mysql",
"binary_version": "5.5.1+dfsg-16ubuntu7.7+esm2"
},
{
"binary_name": "libqt5sql5-odbc",
"binary_version": "5.5.1+dfsg-16ubuntu7.7+esm2"
},
{
"binary_name": "libqt5sql5-psql",
"binary_version": "5.5.1+dfsg-16ubuntu7.7+esm2"
},
{
"binary_name": "libqt5sql5-sqlite",
"binary_version": "5.5.1+dfsg-16ubuntu7.7+esm2"
},
{
"binary_name": "libqt5sql5-tds",
"binary_version": "5.5.1+dfsg-16ubuntu7.7+esm2"
},
{
"binary_name": "libqt5test5",
"binary_version": "5.5.1+dfsg-16ubuntu7.7+esm2"
},
{
"binary_name": "libqt5widgets5",
"binary_version": "5.5.1+dfsg-16ubuntu7.7+esm2"
},
{
"binary_name": "libqt5xml5",
"binary_version": "5.5.1+dfsg-16ubuntu7.7+esm2"
},
{
"binary_name": "qt5-default",
"binary_version": "5.5.1+dfsg-16ubuntu7.7+esm2"
},
{
"binary_name": "qt5-qmake",
"binary_version": "5.5.1+dfsg-16ubuntu7.7+esm2"
},
{
"binary_name": "qt5-qmake-arm-linux-gnueabihf",
"binary_version": "5.5.1+dfsg-16ubuntu7.7+esm2"
},
{
"binary_name": "qtbase5-dev-tools",
"binary_version": "5.5.1+dfsg-16ubuntu7.7+esm2"
},
{
"binary_name": "qtbase5-doc-html",
"binary_version": "5.5.1+dfsg-16ubuntu7.7+esm2"
},
{
"binary_name": "qtbase5-examples",
"binary_version": "5.5.1+dfsg-16ubuntu7.7+esm2"
}
]
},
"package": {
"ecosystem": "Ubuntu:Pro:16.04:LTS",
"name": "qtbase-opensource-src",
"purl": "pkg:deb/ubuntu/qtbase-opensource-src@5.5.1+dfsg-16ubuntu7.7+esm2?arch=source\u0026distro=esm-infra/xenial"
},
"ranges": [
{
"events": [
{
"introduced": "0"
}
],
"type": "ECOSYSTEM"
}
],
"versions": [
"5.4.2+dfsg-2ubuntu9",
"5.5.1+dfsg-6ubuntu4",
"5.5.1+dfsg-10ubuntu2",
"5.5.1+dfsg-13ubuntu1",
"5.5.1+dfsg-13ubuntu2",
"5.5.1+dfsg-13ubuntu3",
"5.5.1+dfsg-14ubuntu1",
"5.5.1+dfsg-14ubuntu2",
"5.5.1+dfsg-14ubuntu3",
"5.5.1+dfsg-15ubuntu1",
"5.5.1+dfsg-16ubuntu1",
"5.5.1+dfsg-16ubuntu6",
"5.5.1+dfsg-16ubuntu7",
"5.5.1+dfsg-16ubuntu7.1",
"5.5.1+dfsg-16ubuntu7.2",
"5.5.1+dfsg-16ubuntu7.5",
"5.5.1+dfsg-16ubuntu7.6",
"5.5.1+dfsg-16ubuntu7.7",
"5.5.1+dfsg-16ubuntu7.7+esm1",
"5.5.1+dfsg-16ubuntu7.7+esm2"
]
},
{
"ecosystem_specific": {
"binaries": [
{
"binary_name": "phantomjs",
"binary_version": "2.1.1+dfsg-1"
}
]
},
"package": {
"ecosystem": "Ubuntu:16.04:LTS",
"name": "phantomjs",
"purl": "pkg:deb/ubuntu/phantomjs@2.1.1+dfsg-1?arch=source\u0026distro=xenial"
},
"ranges": [
{
"events": [
{
"introduced": "0"
}
],
"type": "ECOSYSTEM"
}
],
"versions": [
"1.9.0-1",
"2.0.0+dfsg-1",
"2.1.1+dfsg-1"
]
},
{
"ecosystem_specific": {
"binaries": [
{
"binary_name": "libpyside-py3-1.2",
"binary_version": "1.2.2-2build2"
},
{
"binary_name": "libpyside1.2",
"binary_version": "1.2.2-2build2"
},
{
"binary_name": "python-pyside",
"binary_version": "1.2.2-2build2"
},
{
"binary_name": "python-pyside.phonon",
"binary_version": "1.2.2-2build2"
},
{
"binary_name": "python-pyside.qtcore",
"binary_version": "1.2.2-2build2"
},
{
"binary_name": "python-pyside.qtdeclarative",
"binary_version": "1.2.2-2build2"
},
{
"binary_name": "python-pyside.qtgui",
"binary_version": "1.2.2-2build2"
},
{
"binary_name": "python-pyside.qthelp",
"binary_version": "1.2.2-2build2"
},
{
"binary_name": "python-pyside.qtnetwork",
"binary_version": "1.2.2-2build2"
},
{
"binary_name": "python-pyside.qtopengl",
"binary_version": "1.2.2-2build2"
},
{
"binary_name": "python-pyside.qtscript",
"binary_version": "1.2.2-2build2"
},
{
"binary_name": "python-pyside.qtsql",
"binary_version": "1.2.2-2build2"
},
{
"binary_name": "python-pyside.qtsvg",
"binary_version": "1.2.2-2build2"
},
{
"binary_name": "python-pyside.qttest",
"binary_version": "1.2.2-2build2"
},
{
"binary_name": "python-pyside.qtuitools",
"binary_version": "1.2.2-2build2"
},
{
"binary_name": "python-pyside.qtwebkit",
"binary_version": "1.2.2-2build2"
},
{
"binary_name": "python-pyside.qtxml",
"binary_version": "1.2.2-2build2"
},
{
"binary_name": "python3-pyside",
"binary_version": "1.2.2-2build2"
},
{
"binary_name": "python3-pyside.phonon",
"binary_version": "1.2.2-2build2"
},
{
"binary_name": "python3-pyside.qtcore",
"binary_version": "1.2.2-2build2"
},
{
"binary_name": "python3-pyside.qtdeclarative",
"binary_version": "1.2.2-2build2"
},
{
"binary_name": "python3-pyside.qtgui",
"binary_version": "1.2.2-2build2"
},
{
"binary_name": "python3-pyside.qthelp",
"binary_version": "1.2.2-2build2"
},
{
"binary_name": "python3-pyside.qtnetwork",
"binary_version": "1.2.2-2build2"
},
{
"binary_name": "python3-pyside.qtopengl",
"binary_version": "1.2.2-2build2"
},
{
"binary_name": "python3-pyside.qtscript",
"binary_version": "1.2.2-2build2"
},
{
"binary_name": "python3-pyside.qtsql",
"binary_version": "1.2.2-2build2"
},
{
"binary_name": "python3-pyside.qtsvg",
"binary_version": "1.2.2-2build2"
},
{
"binary_name": "python3-pyside.qttest",
"binary_version": "1.2.2-2build2"
},
{
"binary_name": "python3-pyside.qtuitools",
"binary_version": "1.2.2-2build2"
},
{
"binary_name": "python3-pyside.qtwebkit",
"binary_version": "1.2.2-2build2"
},
{
"binary_name": "python3-pyside.qtxml",
"binary_version": "1.2.2-2build2"
}
]
},
"package": {
"ecosystem": "Ubuntu:16.04:LTS",
"name": "pyside",
"purl": "pkg:deb/ubuntu/pyside@1.2.2-2build2?arch=source\u0026distro=xenial"
},
"ranges": [
{
"events": [
{
"introduced": "0"
}
],
"type": "ECOSYSTEM"
}
],
"versions": [
"1.2.2-2",
"1.2.2-2build1",
"1.2.2-2build2"
]
},
{
"ecosystem_specific": {
"binaries": [
{
"binary_name": "libqt5concurrent5",
"binary_version": "5.9.5+dfsg-0ubuntu2.6+esm2"
},
{
"binary_name": "libqt5core5a",
"binary_version": "5.9.5+dfsg-0ubuntu2.6+esm2"
},
{
"binary_name": "libqt5dbus5",
"binary_version": "5.9.5+dfsg-0ubuntu2.6+esm2"
},
{
"binary_name": "libqt5gui5",
"binary_version": "5.9.5+dfsg-0ubuntu2.6+esm2"
},
{
"binary_name": "libqt5network5",
"binary_version": "5.9.5+dfsg-0ubuntu2.6+esm2"
},
{
"binary_name": "libqt5opengl5",
"binary_version": "5.9.5+dfsg-0ubuntu2.6+esm2"
},
{
"binary_name": "libqt5printsupport5",
"binary_version": "5.9.5+dfsg-0ubuntu2.6+esm2"
},
{
"binary_name": "libqt5sql5",
"binary_version": "5.9.5+dfsg-0ubuntu2.6+esm2"
},
{
"binary_name": "libqt5sql5-ibase",
"binary_version": "5.9.5+dfsg-0ubuntu2.6+esm2"
},
{
"binary_name": "libqt5sql5-mysql",
"binary_version": "5.9.5+dfsg-0ubuntu2.6+esm2"
},
{
"binary_name": "libqt5sql5-odbc",
"binary_version": "5.9.5+dfsg-0ubuntu2.6+esm2"
},
{
"binary_name": "libqt5sql5-psql",
"binary_version": "5.9.5+dfsg-0ubuntu2.6+esm2"
},
{
"binary_name": "libqt5sql5-sqlite",
"binary_version": "5.9.5+dfsg-0ubuntu2.6+esm2"
},
{
"binary_name": "libqt5sql5-tds",
"binary_version": "5.9.5+dfsg-0ubuntu2.6+esm2"
},
{
"binary_name": "libqt5test5",
"binary_version": "5.9.5+dfsg-0ubuntu2.6+esm2"
},
{
"binary_name": "libqt5widgets5",
"binary_version": "5.9.5+dfsg-0ubuntu2.6+esm2"
},
{
"binary_name": "libqt5xml5",
"binary_version": "5.9.5+dfsg-0ubuntu2.6+esm2"
},
{
"binary_name": "qt5-default",
"binary_version": "5.9.5+dfsg-0ubuntu2.6+esm2"
},
{
"binary_name": "qt5-gtk-platformtheme",
"binary_version": "5.9.5+dfsg-0ubuntu2.6+esm2"
},
{
"binary_name": "qt5-qmake",
"binary_version": "5.9.5+dfsg-0ubuntu2.6+esm2"
},
{
"binary_name": "qt5-qmake-bin",
"binary_version": "5.9.5+dfsg-0ubuntu2.6+esm2"
},
{
"binary_name": "qtbase5-dev-tools",
"binary_version": "5.9.5+dfsg-0ubuntu2.6+esm2"
},
{
"binary_name": "qtbase5-doc-html",
"binary_version": "5.9.5+dfsg-0ubuntu2.6+esm2"
},
{
"binary_name": "qtbase5-examples",
"binary_version": "5.9.5+dfsg-0ubuntu2.6+esm2"
}
]
},
"package": {
"ecosystem": "Ubuntu:Pro:18.04:LTS",
"name": "qtbase-opensource-src",
"purl": "pkg:deb/ubuntu/qtbase-opensource-src@5.9.5+dfsg-0ubuntu2.6+esm2?arch=source\u0026distro=esm-infra/bionic"
},
"ranges": [
{
"events": [
{
"introduced": "0"
}
],
"type": "ECOSYSTEM"
}
],
"versions": [
"5.9.1+dfsg-10ubuntu1",
"5.9.1+dfsg-10ubuntu2",
"5.9.2+dfsg-4ubuntu6",
"5.9.3+dfsg-0ubuntu1",
"5.9.3+dfsg-0ubuntu3",
"5.9.3+dfsg-0ubuntu4",
"5.9.4+dfsg-0ubuntu3",
"5.9.4+dfsg-0ubuntu4",
"5.9.5+dfsg-0ubuntu1",
"5.9.5+dfsg-0ubuntu2",
"5.9.5+dfsg-0ubuntu2.1",
"5.9.5+dfsg-0ubuntu2.3",
"5.9.5+dfsg-0ubuntu2.4",
"5.9.5+dfsg-0ubuntu2.5",
"5.9.5+dfsg-0ubuntu2.6",
"5.9.5+dfsg-0ubuntu2.6+esm1",
"5.9.5+dfsg-0ubuntu2.6+esm2"
]
},
{
"ecosystem_specific": {
"binaries": [
{
"binary_name": "phantomjs",
"binary_version": "2.1.1+dfsg-2"
}
]
},
"package": {
"ecosystem": "Ubuntu:18.04:LTS",
"name": "phantomjs",
"purl": "pkg:deb/ubuntu/phantomjs@2.1.1+dfsg-2?arch=source\u0026distro=bionic"
},
"ranges": [
{
"events": [
{
"introduced": "0"
}
],
"type": "ECOSYSTEM"
}
],
"versions": [
"2.1.1+dfsg-2"
]
},
{
"ecosystem_specific": {
"binaries": [
{
"binary_name": "libpyside-py3-1.2",
"binary_version": "1.2.2+source1-3"
},
{
"binary_name": "libpyside1.2",
"binary_version": "1.2.2+source1-3"
},
{
"binary_name": "python-pyside",
"binary_version": "1.2.2+source1-3"
},
{
"binary_name": "python-pyside.phonon",
"binary_version": "1.2.2+source1-3"
},
{
"binary_name": "python-pyside.qtcore",
"binary_version": "1.2.2+source1-3"
},
{
"binary_name": "python-pyside.qtdeclarative",
"binary_version": "1.2.2+source1-3"
},
{
"binary_name": "python-pyside.qtgui",
"binary_version": "1.2.2+source1-3"
},
{
"binary_name": "python-pyside.qthelp",
"binary_version": "1.2.2+source1-3"
},
{
"binary_name": "python-pyside.qtnetwork",
"binary_version": "1.2.2+source1-3"
},
{
"binary_name": "python-pyside.qtopengl",
"binary_version": "1.2.2+source1-3"
},
{
"binary_name": "python-pyside.qtscript",
"binary_version": "1.2.2+source1-3"
},
{
"binary_name": "python-pyside.qtsql",
"binary_version": "1.2.2+source1-3"
},
{
"binary_name": "python-pyside.qtsvg",
"binary_version": "1.2.2+source1-3"
},
{
"binary_name": "python-pyside.qttest",
"binary_version": "1.2.2+source1-3"
},
{
"binary_name": "python-pyside.qtuitools",
"binary_version": "1.2.2+source1-3"
},
{
"binary_name": "python-pyside.qtwebkit",
"binary_version": "1.2.2+source1-3"
},
{
"binary_name": "python-pyside.qtxml",
"binary_version": "1.2.2+source1-3"
},
{
"binary_name": "python3-pyside",
"binary_version": "1.2.2+source1-3"
},
{
"binary_name": "python3-pyside.phonon",
"binary_version": "1.2.2+source1-3"
},
{
"binary_name": "python3-pyside.qtcore",
"binary_version": "1.2.2+source1-3"
},
{
"binary_name": "python3-pyside.qtdeclarative",
"binary_version": "1.2.2+source1-3"
},
{
"binary_name": "python3-pyside.qtgui",
"binary_version": "1.2.2+source1-3"
},
{
"binary_name": "python3-pyside.qthelp",
"binary_version": "1.2.2+source1-3"
},
{
"binary_name": "python3-pyside.qtnetwork",
"binary_version": "1.2.2+source1-3"
},
{
"binary_name": "python3-pyside.qtopengl",
"binary_version": "1.2.2+source1-3"
},
{
"binary_name": "python3-pyside.qtscript",
"binary_version": "1.2.2+source1-3"
},
{
"binary_name": "python3-pyside.qtsql",
"binary_version": "1.2.2+source1-3"
},
{
"binary_name": "python3-pyside.qtsvg",
"binary_version": "1.2.2+source1-3"
},
{
"binary_name": "python3-pyside.qttest",
"binary_version": "1.2.2+source1-3"
},
{
"binary_name": "python3-pyside.qtuitools",
"binary_version": "1.2.2+source1-3"
},
{
"binary_name": "python3-pyside.qtwebkit",
"binary_version": "1.2.2+source1-3"
},
{
"binary_name": "python3-pyside.qtxml",
"binary_version": "1.2.2+source1-3"
}
]
},
"package": {
"ecosystem": "Ubuntu:18.04:LTS",
"name": "pyside",
"purl": "pkg:deb/ubuntu/pyside@1.2.2+source1-3?arch=source\u0026distro=bionic"
},
"ranges": [
{
"events": [
{
"introduced": "0"
}
],
"type": "ECOSYSTEM"
}
],
"versions": [
"1.2.2+source1-1build1",
"1.2.2+source1-2",
"1.2.2+source1-3"
]
},
{
"ecosystem_specific": {
"binaries": [
{
"binary_name": "libqt4-dbus",
"binary_version": "4:4.8.7+dfsg-7ubuntu1"
},
{
"binary_name": "libqt4-declarative",
"binary_version": "4:4.8.7+dfsg-7ubuntu1"
},
{
"binary_name": "libqt4-declarative-folderlistmodel",
"binary_version": "4:4.8.7+dfsg-7ubuntu1"
},
{
"binary_name": "libqt4-declarative-gestures",
"binary_version": "4:4.8.7+dfsg-7ubuntu1"
},
{
"binary_name": "libqt4-declarative-particles",
"binary_version": "4:4.8.7+dfsg-7ubuntu1"
},
{
"binary_name": "libqt4-declarative-shaders",
"binary_version": "4:4.8.7+dfsg-7ubuntu1"
},
{
"binary_name": "libqt4-designer",
"binary_version": "4:4.8.7+dfsg-7ubuntu1"
},
{
"binary_name": "libqt4-dev-bin",
"binary_version": "4:4.8.7+dfsg-7ubuntu1"
},
{
"binary_name": "libqt4-help",
"binary_version": "4:4.8.7+dfsg-7ubuntu1"
},
{
"binary_name": "libqt4-network",
"binary_version": "4:4.8.7+dfsg-7ubuntu1"
},
{
"binary_name": "libqt4-opengl",
"binary_version": "4:4.8.7+dfsg-7ubuntu1"
},
{
"binary_name": "libqt4-qt3support",
"binary_version": "4:4.8.7+dfsg-7ubuntu1"
},
{
"binary_name": "libqt4-script",
"binary_version": "4:4.8.7+dfsg-7ubuntu1"
},
{
"binary_name": "libqt4-scripttools",
"binary_version": "4:4.8.7+dfsg-7ubuntu1"
},
{
"binary_name": "libqt4-sql",
"binary_version": "4:4.8.7+dfsg-7ubuntu1"
},
{
"binary_name": "libqt4-sql-mysql",
"binary_version": "4:4.8.7+dfsg-7ubuntu1"
},
{
"binary_name": "libqt4-sql-odbc",
"binary_version": "4:4.8.7+dfsg-7ubuntu1"
},
{
"binary_name": "libqt4-sql-psql",
"binary_version": "4:4.8.7+dfsg-7ubuntu1"
},
{
"binary_name": "libqt4-sql-sqlite",
"binary_version": "4:4.8.7+dfsg-7ubuntu1"
},
{
"binary_name": "libqt4-sql-tds",
"binary_version": "4:4.8.7+dfsg-7ubuntu1"
},
{
"binary_name": "libqt4-svg",
"binary_version": "4:4.8.7+dfsg-7ubuntu1"
},
{
"binary_name": "libqt4-test",
"binary_version": "4:4.8.7+dfsg-7ubuntu1"
},
{
"binary_name": "libqt4-xml",
"binary_version": "4:4.8.7+dfsg-7ubuntu1"
},
{
"binary_name": "libqt4-xmlpatterns",
"binary_version": "4:4.8.7+dfsg-7ubuntu1"
},
{
"binary_name": "libqtcore4",
"binary_version": "4:4.8.7+dfsg-7ubuntu1"
},
{
"binary_name": "libqtdbus4",
"binary_version": "4:4.8.7+dfsg-7ubuntu1"
},
{
"binary_name": "libqtgui4",
"binary_version": "4:4.8.7+dfsg-7ubuntu1"
},
{
"binary_name": "qdbus",
"binary_version": "4:4.8.7+dfsg-7ubuntu1"
},
{
"binary_name": "qt4-default",
"binary_version": "4:4.8.7+dfsg-7ubuntu1"
},
{
"binary_name": "qt4-demos",
"binary_version": "4:4.8.7+dfsg-7ubuntu1"
},
{
"binary_name": "qt4-designer",
"binary_version": "4:4.8.7+dfsg-7ubuntu1"
},
{
"binary_name": "qt4-dev-tools",
"binary_version": "4:4.8.7+dfsg-7ubuntu1"
},
{
"binary_name": "qt4-doc-html",
"binary_version": "4:4.8.7+dfsg-7ubuntu1"
},
{
"binary_name": "qt4-linguist-tools",
"binary_version": "4:4.8.7+dfsg-7ubuntu1"
},
{
"binary_name": "qt4-qmake",
"binary_version": "4:4.8.7+dfsg-7ubuntu1"
},
{
"binary_name": "qt4-qmlviewer",
"binary_version": "4:4.8.7+dfsg-7ubuntu1"
},
{
"binary_name": "qt4-qtconfig",
"binary_version": "4:4.8.7+dfsg-7ubuntu1"
},
{
"binary_name": "qtcore4-l10n",
"binary_version": "4:4.8.7+dfsg-7ubuntu1"
}
]
},
"package": {
"ecosystem": "Ubuntu:18.04:LTS",
"name": "qt4-x11",
"purl": "pkg:deb/ubuntu/qt4-x11@4:4.8.7+dfsg-7ubuntu1?arch=source\u0026distro=bionic"
},
"ranges": [
{
"events": [
{
"introduced": "0"
}
],
"type": "ECOSYSTEM"
}
],
"versions": [
"4:4.8.7+dfsg-7ubuntu1"
]
},
{
"ecosystem_specific": {
"binaries": [
{
"binary_name": "phantomjs",
"binary_version": "2.1.1+dfsg-2ubuntu1"
}
]
},
"package": {
"ecosystem": "Ubuntu:20.04:LTS",
"name": "phantomjs",
"purl": "pkg:deb/ubuntu/phantomjs@2.1.1+dfsg-2ubuntu1?arch=source\u0026distro=focal"
},
"ranges": [
{
"events": [
{
"introduced": "0"
}
],
"type": "ECOSYSTEM"
}
],
"versions": [
"2.1.1+dfsg-2",
"2.1.1+dfsg-2ubuntu1"
]
},
{
"ecosystem_specific": {
"binaries": [
{
"binary_name": "libpyside2-py3-5.14",
"binary_version": "5.14.0-1~exp1ubuntu5"
},
{
"binary_name": "libshiboken2-py3-5.14",
"binary_version": "5.14.0-1~exp1ubuntu5"
},
{
"binary_name": "pyside2-tools",
"binary_version": "5.14.0-1~exp1ubuntu5"
},
{
"binary_name": "python3-pyside2.qt3dcore",
"binary_version": "5.14.0-1~exp1ubuntu5"
},
{
"binary_name": "python3-pyside2.qt3dinput",
"binary_version": "5.14.0-1~exp1ubuntu5"
},
{
"binary_name": "python3-pyside2.qt3dlogic",
"binary_version": "5.14.0-1~exp1ubuntu5"
},
{
"binary_name": "python3-pyside2.qt3drender",
"binary_version": "5.14.0-1~exp1ubuntu5"
},
{
"binary_name": "python3-pyside2.qtcharts",
"binary_version": "5.14.0-1~exp1ubuntu5"
},
{
"binary_name": "python3-pyside2.qtconcurrent",
"binary_version": "5.14.0-1~exp1ubuntu5"
},
{
"binary_name": "python3-pyside2.qtcore",
"binary_version": "5.14.0-1~exp1ubuntu5"
},
{
"binary_name": "python3-pyside2.qtdatavisualization",
"binary_version": "5.14.0-1~exp1ubuntu5"
},
{
"binary_name": "python3-pyside2.qtgui",
"binary_version": "5.14.0-1~exp1ubuntu5"
},
{
"binary_name": "python3-pyside2.qthelp",
"binary_version": "5.14.0-1~exp1ubuntu5"
},
{
"binary_name": "python3-pyside2.qtlocation",
"binary_version": "5.14.0-1~exp1ubuntu5"
},
{
"binary_name": "python3-pyside2.qtmultimedia",
"binary_version": "5.14.0-1~exp1ubuntu5"
},
{
"binary_name": "python3-pyside2.qtmultimediawidgets",
"binary_version": "5.14.0-1~exp1ubuntu5"
},
{
"binary_name": "python3-pyside2.qtnetwork",
"binary_version": "5.14.0-1~exp1ubuntu5"
},
{
"binary_name": "python3-pyside2.qtopengl",
"binary_version": "5.14.0-1~exp1ubuntu5"
},
{
"binary_name": "python3-pyside2.qtopenglfunctions",
"binary_version": "5.14.0-1~exp1ubuntu5"
},
{
"binary_name": "python3-pyside2.qtpositioning",
"binary_version": "5.14.0-1~exp1ubuntu5"
},
{
"binary_name": "python3-pyside2.qtprintsupport",
"binary_version": "5.14.0-1~exp1ubuntu5"
},
{
"binary_name": "python3-pyside2.qtqml",
"binary_version": "5.14.0-1~exp1ubuntu5"
},
{
"binary_name": "python3-pyside2.qtquick",
"binary_version": "5.14.0-1~exp1ubuntu5"
},
{
"binary_name": "python3-pyside2.qtquickwidgets",
"binary_version": "5.14.0-1~exp1ubuntu5"
},
{
"binary_name": "python3-pyside2.qtscript",
"binary_version": "5.14.0-1~exp1ubuntu5"
},
{
"binary_name": "python3-pyside2.qtscripttools",
"binary_version": "5.14.0-1~exp1ubuntu5"
},
{
"binary_name": "python3-pyside2.qtscxml",
"binary_version": "5.14.0-1~exp1ubuntu5"
},
{
"binary_name": "python3-pyside2.qtsensors",
"binary_version": "5.14.0-1~exp1ubuntu5"
},
{
"binary_name": "python3-pyside2.qtsql",
"binary_version": "5.14.0-1~exp1ubuntu5"
},
{
"binary_name": "python3-pyside2.qtsvg",
"binary_version": "5.14.0-1~exp1ubuntu5"
},
{
"binary_name": "python3-pyside2.qttest",
"binary_version": "5.14.0-1~exp1ubuntu5"
},
{
"binary_name": "python3-pyside2.qttexttospeech",
"binary_version": "5.14.0-1~exp1ubuntu5"
},
{
"binary_name": "python3-pyside2.qtuitools",
"binary_version": "5.14.0-1~exp1ubuntu5"
},
{
"binary_name": "python3-pyside2.qtwebchannel",
"binary_version": "5.14.0-1~exp1ubuntu5"
},
{
"binary_name": "python3-pyside2.qtwebengine",
"binary_version": "5.14.0-1~exp1ubuntu5"
},
{
"binary_name": "python3-pyside2.qtwebenginecore",
"binary_version": "5.14.0-1~exp1ubuntu5"
},
{
"binary_name": "python3-pyside2.qtwebenginewidgets",
"binary_version": "5.14.0-1~exp1ubuntu5"
},
{
"binary_name": "python3-pyside2.qtwebsockets",
"binary_version": "5.14.0-1~exp1ubuntu5"
},
{
"binary_name": "python3-pyside2.qtwidgets",
"binary_version": "5.14.0-1~exp1ubuntu5"
},
{
"binary_name": "python3-pyside2.qtx11extras",
"binary_version": "5.14.0-1~exp1ubuntu5"
},
{
"binary_name": "python3-pyside2.qtxml",
"binary_version": "5.14.0-1~exp1ubuntu5"
},
{
"binary_name": "python3-pyside2.qtxmlpatterns",
"binary_version": "5.14.0-1~exp1ubuntu5"
},
{
"binary_name": "shiboken2",
"binary_version": "5.14.0-1~exp1ubuntu5"
}
]
},
"package": {
"ecosystem": "Ubuntu:20.04:LTS",
"name": "pyside2",
"purl": "pkg:deb/ubuntu/pyside2@5.14.0-1~exp1ubuntu5?arch=source\u0026distro=focal"
},
"ranges": [
{
"events": [
{
"introduced": "0"
}
],
"type": "ECOSYSTEM"
}
],
"versions": [
"5.11.2-3build2",
"5.11.2-3ubuntu1",
"5.11.2-3ubuntu2",
"5.13.2-2.2",
"5.14.0-1~exp1ubuntu2",
"5.14.0-1~exp1ubuntu3",
"5.14.0-1~exp1ubuntu4",
"5.14.0-1~exp1ubuntu5"
]
},
{
"ecosystem_specific": {
"binaries": [
{
"binary_name": "libpyside2-py3-5.15",
"binary_version": "5.15.2-2build2"
},
{
"binary_name": "libshiboken2-py3-5.15",
"binary_version": "5.15.2-2build2"
},
{
"binary_name": "pyside2-tools",
"binary_version": "5.15.2-2build2"
},
{
"binary_name": "python3-pyside2.qt3danimation",
"binary_version": "5.15.2-2build2"
},
{
"binary_name": "python3-pyside2.qt3dcore",
"binary_version": "5.15.2-2build2"
},
{
"binary_name": "python3-pyside2.qt3dextras",
"binary_version": "5.15.2-2build2"
},
{
"binary_name": "python3-pyside2.qt3dinput",
"binary_version": "5.15.2-2build2"
},
{
"binary_name": "python3-pyside2.qt3dlogic",
"binary_version": "5.15.2-2build2"
},
{
"binary_name": "python3-pyside2.qt3drender",
"binary_version": "5.15.2-2build2"
},
{
"binary_name": "python3-pyside2.qtcharts",
"binary_version": "5.15.2-2build2"
},
{
"binary_name": "python3-pyside2.qtconcurrent",
"binary_version": "5.15.2-2build2"
},
{
"binary_name": "python3-pyside2.qtcore",
"binary_version": "5.15.2-2build2"
},
{
"binary_name": "python3-pyside2.qtdatavisualization",
"binary_version": "5.15.2-2build2"
},
{
"binary_name": "python3-pyside2.qtgui",
"binary_version": "5.15.2-2build2"
},
{
"binary_name": "python3-pyside2.qthelp",
"binary_version": "5.15.2-2build2"
},
{
"binary_name": "python3-pyside2.qtlocation",
"binary_version": "5.15.2-2build2"
},
{
"binary_name": "python3-pyside2.qtmultimedia",
"binary_version": "5.15.2-2build2"
},
{
"binary_name": "python3-pyside2.qtmultimediawidgets",
"binary_version": "5.15.2-2build2"
},
{
"binary_name": "python3-pyside2.qtnetwork",
"binary_version": "5.15.2-2build2"
},
{
"binary_name": "python3-pyside2.qtopengl",
"binary_version": "5.15.2-2build2"
},
{
"binary_name": "python3-pyside2.qtopenglfunctions",
"binary_version": "5.15.2-2build2"
},
{
"binary_name": "python3-pyside2.qtpositioning",
"binary_version": "5.15.2-2build2"
},
{
"binary_name": "python3-pyside2.qtprintsupport",
"binary_version": "5.15.2-2build2"
},
{
"binary_name": "python3-pyside2.qtqml",
"binary_version": "5.15.2-2build2"
},
{
"binary_name": "python3-pyside2.qtquick",
"binary_version": "5.15.2-2build2"
},
{
"binary_name": "python3-pyside2.qtquickcontrols2",
"binary_version": "5.15.2-2build2"
},
{
"binary_name": "python3-pyside2.qtquickwidgets",
"binary_version": "5.15.2-2build2"
},
{
"binary_name": "python3-pyside2.qtremoteobjects",
"binary_version": "5.15.2-2build2"
},
{
"binary_name": "python3-pyside2.qtscript",
"binary_version": "5.15.2-2build2"
},
{
"binary_name": "python3-pyside2.qtscripttools",
"binary_version": "5.15.2-2build2"
},
{
"binary_name": "python3-pyside2.qtscxml",
"binary_version": "5.15.2-2build2"
},
{
"binary_name": "python3-pyside2.qtsensors",
"binary_version": "5.15.2-2build2"
},
{
"binary_name": "python3-pyside2.qtserialport",
"binary_version": "5.15.2-2build2"
},
{
"binary_name": "python3-pyside2.qtsql",
"binary_version": "5.15.2-2build2"
},
{
"binary_name": "python3-pyside2.qtsvg",
"binary_version": "5.15.2-2build2"
},
{
"binary_name": "python3-pyside2.qttest",
"binary_version": "5.15.2-2build2"
},
{
"binary_name": "python3-pyside2.qttexttospeech",
"binary_version": "5.15.2-2build2"
},
{
"binary_name": "python3-pyside2.qtuitools",
"binary_version": "5.15.2-2build2"
},
{
"binary_name": "python3-pyside2.qtwebchannel",
"binary_version": "5.15.2-2build2"
},
{
"binary_name": "python3-pyside2.qtwebengine",
"binary_version": "5.15.2-2build2"
},
{
"binary_name": "python3-pyside2.qtwebenginecore",
"binary_version": "5.15.2-2build2"
},
{
"binary_name": "python3-pyside2.qtwebenginewidgets",
"binary_version": "5.15.2-2build2"
},
{
"binary_name": "python3-pyside2.qtwebsockets",
"binary_version": "5.15.2-2build2"
},
{
"binary_name": "python3-pyside2.qtwidgets",
"binary_version": "5.15.2-2build2"
},
{
"binary_name": "python3-pyside2.qtx11extras",
"binary_version": "5.15.2-2build2"
},
{
"binary_name": "python3-pyside2.qtxml",
"binary_version": "5.15.2-2build2"
},
{
"binary_name": "python3-pyside2.qtxmlpatterns",
"binary_version": "5.15.2-2build2"
},
{
"binary_name": "shiboken2",
"binary_version": "5.15.2-2build2"
}
]
},
"package": {
"ecosystem": "Ubuntu:22.04:LTS",
"name": "pyside2",
"purl": "pkg:deb/ubuntu/pyside2@5.15.2-2build2?arch=source\u0026distro=jammy"
},
"ranges": [
{
"events": [
{
"introduced": "0"
}
],
"type": "ECOSYSTEM"
}
],
"versions": [
"5.15.2-1",
"5.15.2-2",
"5.15.2-2build1",
"5.15.2-2build2"
]
},
{
"ecosystem_specific": {
"binaries": [
{
"binary_name": "libpyside2-py3-5.15t64",
"binary_version": "5.15.13-1"
},
{
"binary_name": "libshiboken2-py3-5.15t64",
"binary_version": "5.15.13-1"
},
{
"binary_name": "pyside2-tools",
"binary_version": "5.15.13-1"
},
{
"binary_name": "python3-pyside2.qt3danimation",
"binary_version": "5.15.13-1"
},
{
"binary_name": "python3-pyside2.qt3dcore",
"binary_version": "5.15.13-1"
},
{
"binary_name": "python3-pyside2.qt3dextras",
"binary_version": "5.15.13-1"
},
{
"binary_name": "python3-pyside2.qt3dinput",
"binary_version": "5.15.13-1"
},
{
"binary_name": "python3-pyside2.qt3dlogic",
"binary_version": "5.15.13-1"
},
{
"binary_name": "python3-pyside2.qt3drender",
"binary_version": "5.15.13-1"
},
{
"binary_name": "python3-pyside2.qtcharts",
"binary_version": "5.15.13-1"
},
{
"binary_name": "python3-pyside2.qtconcurrent",
"binary_version": "5.15.13-1"
},
{
"binary_name": "python3-pyside2.qtcore",
"binary_version": "5.15.13-1"
},
{
"binary_name": "python3-pyside2.qtdatavisualization",
"binary_version": "5.15.13-1"
},
{
"binary_name": "python3-pyside2.qtgui",
"binary_version": "5.15.13-1"
},
{
"binary_name": "python3-pyside2.qthelp",
"binary_version": "5.15.13-1"
},
{
"binary_name": "python3-pyside2.qtlocation",
"binary_version": "5.15.13-1"
},
{
"binary_name": "python3-pyside2.qtmultimedia",
"binary_version": "5.15.13-1"
},
{
"binary_name": "python3-pyside2.qtmultimediawidgets",
"binary_version": "5.15.13-1"
},
{
"binary_name": "python3-pyside2.qtnetwork",
"binary_version": "5.15.13-1"
},
{
"binary_name": "python3-pyside2.qtopengl",
"binary_version": "5.15.13-1"
},
{
"binary_name": "python3-pyside2.qtopenglfunctions",
"binary_version": "5.15.13-1"
},
{
"binary_name": "python3-pyside2.qtpositioning",
"binary_version": "5.15.13-1"
},
{
"binary_name": "python3-pyside2.qtprintsupport",
"binary_version": "5.15.13-1"
},
{
"binary_name": "python3-pyside2.qtqml",
"binary_version": "5.15.13-1"
},
{
"binary_name": "python3-pyside2.qtquick",
"binary_version": "5.15.13-1"
},
{
"binary_name": "python3-pyside2.qtquickcontrols2",
"binary_version": "5.15.13-1"
},
{
"binary_name": "python3-pyside2.qtquickwidgets",
"binary_version": "5.15.13-1"
},
{
"binary_name": "python3-pyside2.qtremoteobjects",
"binary_version": "5.15.13-1"
},
{
"binary_name": "python3-pyside2.qtscript",
"binary_version": "5.15.13-1"
},
{
"binary_name": "python3-pyside2.qtscripttools",
"binary_version": "5.15.13-1"
},
{
"binary_name": "python3-pyside2.qtscxml",
"binary_version": "5.15.13-1"
},
{
"binary_name": "python3-pyside2.qtsensors",
"binary_version": "5.15.13-1"
},
{
"binary_name": "python3-pyside2.qtserialport",
"binary_version": "5.15.13-1"
},
{
"binary_name": "python3-pyside2.qtsql",
"binary_version": "5.15.13-1"
},
{
"binary_name": "python3-pyside2.qtsvg",
"binary_version": "5.15.13-1"
},
{
"binary_name": "python3-pyside2.qttest",
"binary_version": "5.15.13-1"
},
{
"binary_name": "python3-pyside2.qttexttospeech",
"binary_version": "5.15.13-1"
},
{
"binary_name": "python3-pyside2.qtuitools",
"binary_version": "5.15.13-1"
},
{
"binary_name": "python3-pyside2.qtwebchannel",
"binary_version": "5.15.13-1"
},
{
"binary_name": "python3-pyside2.qtwebengine",
"binary_version": "5.15.13-1"
},
{
"binary_name": "python3-pyside2.qtwebenginecore",
"binary_version": "5.15.13-1"
},
{
"binary_name": "python3-pyside2.qtwebenginewidgets",
"binary_version": "5.15.13-1"
},
{
"binary_name": "python3-pyside2.qtwebsockets",
"binary_version": "5.15.13-1"
},
{
"binary_name": "python3-pyside2.qtwidgets",
"binary_version": "5.15.13-1"
},
{
"binary_name": "python3-pyside2.qtx11extras",
"binary_version": "5.15.13-1"
},
{
"binary_name": "python3-pyside2.qtxml",
"binary_version": "5.15.13-1"
},
{
"binary_name": "python3-pyside2.qtxmlpatterns",
"binary_version": "5.15.13-1"
},
{
"binary_name": "shiboken2",
"binary_version": "5.15.13-1"
}
]
},
"package": {
"ecosystem": "Ubuntu:24.04:LTS",
"name": "pyside2",
"purl": "pkg:deb/ubuntu/pyside2@5.15.13-1?arch=source\u0026distro=noble"
},
"ranges": [
{
"events": [
{
"introduced": "0"
}
],
"type": "ECOSYSTEM"
}
],
"versions": [
"5.15.10-4",
"5.15.11-1",
"5.15.12-6",
"5.15.12-6.1build1",
"5.15.12-6.1build2",
"5.15.12-6.1build3",
"5.15.13-1"
]
},
{
"ecosystem_specific": {
"binaries": [
{
"binary_name": "libpyside2-py3-5.15t64",
"binary_version": "5.15.16-4"
},
{
"binary_name": "libshiboken2-py3-5.15t64",
"binary_version": "5.15.16-4"
},
{
"binary_name": "pyside2-tools",
"binary_version": "5.15.16-4"
},
{
"binary_name": "python3-pyside2.qtconcurrent",
"binary_version": "5.15.16-4"
},
{
"binary_name": "python3-pyside2.qtcore",
"binary_version": "5.15.16-4"
},
{
"binary_name": "python3-pyside2.qtgui",
"binary_version": "5.15.16-4"
},
{
"binary_name": "python3-pyside2.qthelp",
"binary_version": "5.15.16-4"
},
{
"binary_name": "python3-pyside2.qtmultimedia",
"binary_version": "5.15.16-4"
},
{
"binary_name": "python3-pyside2.qtmultimediawidgets",
"binary_version": "5.15.16-4"
},
{
"binary_name": "python3-pyside2.qtnetwork",
"binary_version": "5.15.16-4"
},
{
"binary_name": "python3-pyside2.qtopengl",
"binary_version": "5.15.16-4"
},
{
"binary_name": "python3-pyside2.qtopenglfunctions",
"binary_version": "5.15.16-4"
},
{
"binary_name": "python3-pyside2.qtprintsupport",
"binary_version": "5.15.16-4"
},
{
"binary_name": "python3-pyside2.qtqml",
"binary_version": "5.15.16-4"
},
{
"binary_name": "python3-pyside2.qtquick",
"binary_version": "5.15.16-4"
},
{
"binary_name": "python3-pyside2.qtsql",
"binary_version": "5.15.16-4"
},
{
"binary_name": "python3-pyside2.qtsvg",
"binary_version": "5.15.16-4"
},
{
"binary_name": "python3-pyside2.qttest",
"binary_version": "5.15.16-4"
},
{
"binary_name": "python3-pyside2.qtuitools",
"binary_version": "5.15.16-4"
},
{
"binary_name": "python3-pyside2.qtwebchannel",
"binary_version": "5.15.16-4"
},
{
"binary_name": "python3-pyside2.qtwebengine",
"binary_version": "5.15.16-4"
},
{
"binary_name": "python3-pyside2.qtwebenginecore",
"binary_version": "5.15.16-4"
},
{
"binary_name": "python3-pyside2.qtwebenginewidgets",
"binary_version": "5.15.16-4"
},
{
"binary_name": "python3-pyside2.qtwebsockets",
"binary_version": "5.15.16-4"
},
{
"binary_name": "python3-pyside2.qtwidgets",
"binary_version": "5.15.16-4"
},
{
"binary_name": "python3-pyside2.qtxml",
"binary_version": "5.15.16-4"
},
{
"binary_name": "python3-pyside2.qtxmlpatterns",
"binary_version": "5.15.16-4"
},
{
"binary_name": "shiboken2",
"binary_version": "5.15.16-4"
}
]
},
"package": {
"ecosystem": "Ubuntu:25.10",
"name": "pyside2",
"purl": "pkg:deb/ubuntu/pyside2@5.15.16-4?arch=source\u0026distro=questing"
},
"ranges": [
{
"events": [
{
"introduced": "0"
}
],
"type": "ECOSYSTEM"
}
],
"versions": [
"5.15.16-3.1build1",
"5.15.16-3.1build2",
"5.15.16-3.1build3",
"5.15.16-4"
]
}
],
"aliases": [],
"details": "Qt through 5.14 allows an exponential XML entity expansion attack via a crafted SVG document that is mishandled in QXmlStreamReader, a related issue to CVE-2003-1564.",
"id": "UBUNTU-CVE-2015-9541",
"modified": "2026-04-22T07:37:53Z",
"published": "2020-01-24T22:15:00Z",
"references": [
{
"type": "REPORT",
"url": "https://ubuntu.com/security/CVE-2015-9541"
},
{
"type": "REPORT",
"url": "https://www.cve.org/CVERecord?id=CVE-2015-9541"
}
],
"related": [],
"schema_version": "1.7.0",
"severity": [
{
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H",
"type": "CVSS_V3"
},
{
"score": "low",
"type": "Ubuntu"
}
],
"upstream": [
"CVE-2015-9541"
]
}
Sightings
| Author | Source | Type | Date | Other |
|---|
Nomenclature
- Seen: The vulnerability was mentioned, discussed, or observed by the user.
- Confirmed: The vulnerability has been validated from an analyst's perspective.
- Published Proof of Concept: A public proof of concept is available for this vulnerability.
- Exploited: The vulnerability was observed as exploited by the user who reported the sighting.
- Patched: The vulnerability was observed as successfully patched by the user who reported the sighting.
- Not exploited: The vulnerability was not observed as exploited by the user who reported the sighting.
- Not confirmed: The user expressed doubt about the validity of the vulnerability.
- Not patched: The vulnerability was not observed as successfully patched by the user who reported the sighting.
The approach is described in our paper Mapping CVEs to MITRE ATT&CK Techniques: A Curated Gold-Set Classifier and the Limits of LLM-Assisted Label Expansion.
Browse all ATT&CK techniques and the vulnerabilities related to each.
Related by attack behaviour
Vulnerabilities whose description is nearest to this one in the vector space of the CIRCL/vulnerability-attack-technique-biencoder model. This is a similarity search over the bi-encoder space (plain cosine), not a classification, and it has no measured accuracy.