• 公告ID (KylinSec-SA-2023-2222)

摘要:

qt5-qtbase security update

安全等级: High

公告ID: KylinSec-SA-2023-2222

发布日期: 2023年8月12日

关联CVE: CVE-2023-24607  

  • 详细介绍

1. 漏洞描述

   

Qt is a software toolkit for developing applications.

Security Fix(es):

Qt before 6.4.3 allows a denial of service via a crafted string when the SQL ODBC driver plugin is used and the size of SQLTCHAR is 4. The affected versions are 5.x before 5.15.13, 6.x before 6.2.8, and 6.3.x before 6.4.3.(CVE-2023-24607)

2. 影响范围

cve名称 产品 组件 是否受影响
CVE-2023-24607 KY3.5.2 qt5-qtbase Fixed

3. 影响组件

    qt5-qtbase

4. 修复版本

   

KY3.5.2

软件名称 架构 版本号
qt5-qtbase-common noarch 5.15.2-11.ky3_5.kb1
qt5-qtbase-static x86_64 5.15.2-11.ky3_5.kb1
qt5-qtbase-examples x86_64 5.15.2-11.ky3_5.kb1
qt5-qtbase-devel x86_64 5.15.2-11.ky3_5.kb1
qt5-qtbase x86_64 5.15.2-11.ky3_5.kb1
qt5-qtbase-gui x86_64 5.15.2-11.ky3_5.kb1
qt5-qtbase-postgresql x86_64 5.15.2-11.ky3_5.kb1
qt5-qtbase-mysql x86_64 5.15.2-11.ky3_5.kb1
qt5-qtbase-odbc x86_64 5.15.2-11.ky3_5.kb1
qt5-qtbase-private-devel x86_64 5.15.2-11.ky3_5.kb1
qt5-qtbase-static aarch64 5.15.2-11.ky3_5.kb1
qt5-qtbase aarch64 5.15.2-11.ky3_5.kb1
qt5-qtbase-private-devel aarch64 5.15.2-11.ky3_5.kb1
qt5-qtbase-gui aarch64 5.15.2-11.ky3_5.kb1
qt5-qtbase-mysql aarch64 5.15.2-11.ky3_5.kb1
qt5-qtbase-odbc aarch64 5.15.2-11.ky3_5.kb1
qt5-qtbase-postgresql aarch64 5.15.2-11.ky3_5.kb1
qt5-qtbase-examples aarch64 5.15.2-11.ky3_5.kb1
qt5-qtbase-devel aarch64 5.15.2-11.ky3_5.kb1

5. 修复方法


方法一:下载安装包进行升级安装
1、通过下载链接下载需要升级的升级包保存,如 xxx.rpm
2、通过rpm命令升级,如 rpm -Uvh xxx.rpm

方法二:通过软件源进行升级安装
1、保持能够连接上互联网
2、通过yum命令升级指定的包,如 yum install 包名

6. 下载链接

   

KY3.5.2:

x86_64:

     qt5-qtbase-common   

     qt5-qtbase-static   

     qt5-qtbase-examples   

     qt5-qtbase-devel   

     qt5-qtbase   

     qt5-qtbase-gui   

     qt5-qtbase-postgresql   

     qt5-qtbase-mysql   

     qt5-qtbase-odbc   

     qt5-qtbase-private-devel   

aarch64:

     qt5-qtbase-common   

     qt5-qtbase-static   

     qt5-qtbase   

     qt5-qtbase-private-devel   

     qt5-qtbase-gui   

     qt5-qtbase-mysql   

     qt5-qtbase-odbc   

     qt5-qtbase-postgresql   

     qt5-qtbase-examples   

     qt5-qtbase-devel   

上一篇:KylinSec-SA-2023-2221 下一篇:KylinSec-SA-2023-2223