CVE-2007-3388

Publication date 3 August 2007

Last updated 24 July 2024


Ubuntu priority

Multiple format string vulnerabilities in (1) qtextedit.cpp, (2) qdatatable.cpp, (3) qsqldatabase.cpp, (4) qsqlindex.cpp, (5) qsqlrecord.cpp, (6) qglobal.cpp, and (7) qsvgdevice.cpp in QTextEdit in Trolltech Qt 3 before 3.3.8 20070727 allow remote attackers to execute arbitrary code via format string specifiers in text used to compose an error message.

Status

Package Ubuntu Release Status
qt-x11-free 7.04 feisty
Fixed 3.3.8really3.3.7-0ubuntu5.2
6.10 edgy
Fixed 3.3.6-3ubuntu3.3
6.06 LTS dapper
Fixed 3.3.6-1ubuntu6.4
qt4-x11 7.04 feisty
Not affected
6.10 edgy
Not affected
6.06 LTS dapper
Not affected

References

Related Ubuntu Security Notices (USN)

Other references