VULNERABILITY

Red Hat: CVE-2021-3481: CVE-2021-3481 qt: Out of bounds read in function QRadialFetchSimd from crafted svg file (Multiple Advisories)

Try Surface Command Get a continuous 360° view of your attack surface
Back to Search

Red Hat: CVE-2021-3481: CVE-2021-3481 qt: Out of bounds read in function QRadialFetchSimd from crafted svg file (Multiple Advisories)

Severity
6
CVSS
(AV:L/AC:M/Au:N/C:C/I:N/A:C)
Published
11/09/2021
Created
11/11/2021
Added
11/10/2021
Modified
01/28/2025

Description

A flaw was found in Qt. An out-of-bounds read vulnerability was found in QRadialFetchSimd in qt/qtbase/src/gui/painting/qdrawhelper_p.h in Qt/Qtbase. While rendering and displaying a crafted Scalable Vector Graphics (SVG) file this flaw may lead to an unauthorized memory access. The highest threat from this vulnerability is to data confidentiality and the application availability.

Solution(s)

  • redhat-upgrade-adwaita-qt-debuginfo
  • redhat-upgrade-adwaita-qt-debugsource
  • redhat-upgrade-adwaita-qt5
  • redhat-upgrade-adwaita-qt5-debuginfo
  • redhat-upgrade-libadwaita-qt5
  • redhat-upgrade-libadwaita-qt5-debuginfo
  • redhat-upgrade-python-qt5-debuginfo
  • redhat-upgrade-python-qt5-debugsource
  • redhat-upgrade-python-qt5-rpm-macros
  • redhat-upgrade-python3-pyqt5-sip
  • redhat-upgrade-python3-pyqt5-sip-debuginfo
  • redhat-upgrade-python3-qt5
  • redhat-upgrade-python3-qt5-base
  • redhat-upgrade-python3-qt5-base-debuginfo
  • redhat-upgrade-python3-qt5-debuginfo
  • redhat-upgrade-python3-qt5-devel
  • redhat-upgrade-python3-sip-devel
  • redhat-upgrade-python3-wx-siplib
  • redhat-upgrade-python3-wx-siplib-debuginfo
  • redhat-upgrade-qgnomeplatform
  • redhat-upgrade-qgnomeplatform-debuginfo
  • redhat-upgrade-qgnomeplatform-debugsource
  • redhat-upgrade-qt5-assistant
  • redhat-upgrade-qt5-assistant-debuginfo
  • redhat-upgrade-qt5-designer
  • redhat-upgrade-qt5-designer-debuginfo
  • redhat-upgrade-qt5-devel
  • redhat-upgrade-qt5-doctools
  • redhat-upgrade-qt5-doctools-debuginfo
  • redhat-upgrade-qt5-linguist
  • redhat-upgrade-qt5-linguist-debuginfo
  • redhat-upgrade-qt5-qdbusviewer
  • redhat-upgrade-qt5-qdbusviewer-debuginfo
  • redhat-upgrade-qt5-qt3d
  • redhat-upgrade-qt5-qt3d-debuginfo
  • redhat-upgrade-qt5-qt3d-debugsource
  • redhat-upgrade-qt5-qt3d-devel
  • redhat-upgrade-qt5-qt3d-devel-debuginfo
  • redhat-upgrade-qt5-qt3d-examples
  • redhat-upgrade-qt5-qt3d-examples-debuginfo
  • redhat-upgrade-qt5-qt3d-tests-debuginfo
  • redhat-upgrade-qt5-qtbase
  • redhat-upgrade-qt5-qtbase-common
  • redhat-upgrade-qt5-qtbase-debuginfo
  • redhat-upgrade-qt5-qtbase-debugsource
  • redhat-upgrade-qt5-qtbase-devel
  • redhat-upgrade-qt5-qtbase-devel-debuginfo
  • redhat-upgrade-qt5-qtbase-examples
  • redhat-upgrade-qt5-qtbase-examples-debuginfo
  • redhat-upgrade-qt5-qtbase-gui
  • redhat-upgrade-qt5-qtbase-gui-debuginfo
  • redhat-upgrade-qt5-qtbase-mysql
  • redhat-upgrade-qt5-qtbase-mysql-debuginfo
  • redhat-upgrade-qt5-qtbase-odbc
  • redhat-upgrade-qt5-qtbase-odbc-debuginfo
  • redhat-upgrade-qt5-qtbase-postgresql
  • redhat-upgrade-qt5-qtbase-postgresql-debuginfo
  • redhat-upgrade-qt5-qtbase-private-devel
  • redhat-upgrade-qt5-qtbase-static
  • redhat-upgrade-qt5-qtbase-tests-debuginfo
  • redhat-upgrade-qt5-qtcanvas3d
  • redhat-upgrade-qt5-qtcanvas3d-debuginfo
  • redhat-upgrade-qt5-qtcanvas3d-debugsource
  • redhat-upgrade-qt5-qtcanvas3d-examples
  • redhat-upgrade-qt5-qtcanvas3d-examples-debuginfo
  • redhat-upgrade-qt5-qtcanvas3d-tests-debuginfo
  • redhat-upgrade-qt5-qtconnectivity
  • redhat-upgrade-qt5-qtconnectivity-debuginfo
  • redhat-upgrade-qt5-qtconnectivity-debugsource
  • redhat-upgrade-qt5-qtconnectivity-devel
  • redhat-upgrade-qt5-qtconnectivity-examples
  • redhat-upgrade-qt5-qtconnectivity-examples-debuginfo
  • redhat-upgrade-qt5-qtconnectivity-tests-debuginfo
  • redhat-upgrade-qt5-qtdeclarative
  • redhat-upgrade-qt5-qtdeclarative-debuginfo
  • redhat-upgrade-qt5-qtdeclarative-debugsource
  • redhat-upgrade-qt5-qtdeclarative-devel
  • redhat-upgrade-qt5-qtdeclarative-devel-debuginfo
  • redhat-upgrade-qt5-qtdeclarative-examples
  • redhat-upgrade-qt5-qtdeclarative-examples-debuginfo
  • redhat-upgrade-qt5-qtdeclarative-static
  • redhat-upgrade-qt5-qtdeclarative-tests-debuginfo
  • redhat-upgrade-qt5-qtdoc
  • redhat-upgrade-qt5-qtgraphicaleffects
  • redhat-upgrade-qt5-qtgraphicaleffects-debuginfo
  • redhat-upgrade-qt5-qtgraphicaleffects-debugsource
  • redhat-upgrade-qt5-qtgraphicaleffects-tests-debuginfo
  • redhat-upgrade-qt5-qtimageformats
  • redhat-upgrade-qt5-qtimageformats-debuginfo
  • redhat-upgrade-qt5-qtimageformats-debugsource
  • redhat-upgrade-qt5-qtimageformats-tests-debuginfo
  • redhat-upgrade-qt5-qtlocation
  • redhat-upgrade-qt5-qtlocation-debuginfo
  • redhat-upgrade-qt5-qtlocation-debugsource
  • redhat-upgrade-qt5-qtlocation-devel
  • redhat-upgrade-qt5-qtlocation-examples
  • redhat-upgrade-qt5-qtlocation-examples-debuginfo
  • redhat-upgrade-qt5-qtlocation-tests-debuginfo
  • redhat-upgrade-qt5-qtmultimedia
  • redhat-upgrade-qt5-qtmultimedia-debuginfo
  • redhat-upgrade-qt5-qtmultimedia-debugsource
  • redhat-upgrade-qt5-qtmultimedia-devel
  • redhat-upgrade-qt5-qtmultimedia-examples
  • redhat-upgrade-qt5-qtmultimedia-examples-debuginfo
  • redhat-upgrade-qt5-qtmultimedia-tests-debuginfo
  • redhat-upgrade-qt5-qtquickcontrols
  • redhat-upgrade-qt5-qtquickcontrols-debuginfo
  • redhat-upgrade-qt5-qtquickcontrols-debugsource
  • redhat-upgrade-qt5-qtquickcontrols-examples
  • redhat-upgrade-qt5-qtquickcontrols-examples-debuginfo
  • redhat-upgrade-qt5-qtquickcontrols-tests-debuginfo
  • redhat-upgrade-qt5-qtquickcontrols2
  • redhat-upgrade-qt5-qtquickcontrols2-debuginfo
  • redhat-upgrade-qt5-qtquickcontrols2-debugsource
  • redhat-upgrade-qt5-qtquickcontrols2-devel
  • redhat-upgrade-qt5-qtquickcontrols2-examples
  • redhat-upgrade-qt5-qtquickcontrols2-examples-debuginfo
  • redhat-upgrade-qt5-qtquickcontrols2-tests-debuginfo
  • redhat-upgrade-qt5-qtscript
  • redhat-upgrade-qt5-qtscript-debuginfo
  • redhat-upgrade-qt5-qtscript-debugsource
  • redhat-upgrade-qt5-qtscript-devel
  • redhat-upgrade-qt5-qtscript-examples
  • redhat-upgrade-qt5-qtscript-examples-debuginfo
  • redhat-upgrade-qt5-qtscript-tests-debuginfo
  • redhat-upgrade-qt5-qtsensors
  • redhat-upgrade-qt5-qtsensors-debuginfo
  • redhat-upgrade-qt5-qtsensors-debugsource
  • redhat-upgrade-qt5-qtsensors-devel
  • redhat-upgrade-qt5-qtsensors-examples
  • redhat-upgrade-qt5-qtsensors-examples-debuginfo
  • redhat-upgrade-qt5-qtsensors-tests-debuginfo
  • redhat-upgrade-qt5-qtserialbus
  • redhat-upgrade-qt5-qtserialbus-debuginfo
  • redhat-upgrade-qt5-qtserialbus-debugsource
  • redhat-upgrade-qt5-qtserialbus-devel
  • redhat-upgrade-qt5-qtserialbus-examples
  • redhat-upgrade-qt5-qtserialbus-examples-debuginfo
  • redhat-upgrade-qt5-qtserialbus-tests-debuginfo
  • redhat-upgrade-qt5-qtserialport
  • redhat-upgrade-qt5-qtserialport-debuginfo
  • redhat-upgrade-qt5-qtserialport-debugsource
  • redhat-upgrade-qt5-qtserialport-devel
  • redhat-upgrade-qt5-qtserialport-examples
  • redhat-upgrade-qt5-qtserialport-examples-debuginfo
  • redhat-upgrade-qt5-qtserialport-tests-debuginfo
  • redhat-upgrade-qt5-qtsvg
  • redhat-upgrade-qt5-qtsvg-debuginfo
  • redhat-upgrade-qt5-qtsvg-debugsource
  • redhat-upgrade-qt5-qtsvg-devel
  • redhat-upgrade-qt5-qtsvg-examples
  • redhat-upgrade-qt5-qtsvg-examples-debuginfo
  • redhat-upgrade-qt5-qtsvg-tests-debuginfo
  • redhat-upgrade-qt5-qttools
  • redhat-upgrade-qt5-qttools-common
  • redhat-upgrade-qt5-qttools-debuginfo
  • redhat-upgrade-qt5-qttools-debugsource
  • redhat-upgrade-qt5-qttools-devel
  • redhat-upgrade-qt5-qttools-devel-debuginfo
  • redhat-upgrade-qt5-qttools-examples
  • redhat-upgrade-qt5-qttools-examples-debuginfo
  • redhat-upgrade-qt5-qttools-libs-designer
  • redhat-upgrade-qt5-qttools-libs-designer-debuginfo
  • redhat-upgrade-qt5-qttools-libs-designercomponents
  • redhat-upgrade-qt5-qttools-libs-designercomponents-debuginfo
  • redhat-upgrade-qt5-qttools-libs-help
  • redhat-upgrade-qt5-qttools-libs-help-debuginfo
  • redhat-upgrade-qt5-qttools-static
  • redhat-upgrade-qt5-qttools-tests-debuginfo
  • redhat-upgrade-qt5-qttranslations
  • redhat-upgrade-qt5-qtwayland
  • redhat-upgrade-qt5-qtwayland-debuginfo
  • redhat-upgrade-qt5-qtwayland-debugsource
  • redhat-upgrade-qt5-qtwayland-devel
  • redhat-upgrade-qt5-qtwayland-devel-debuginfo
  • redhat-upgrade-qt5-qtwayland-examples
  • redhat-upgrade-qt5-qtwayland-examples-debuginfo
  • redhat-upgrade-qt5-qtwayland-tests-debuginfo
  • redhat-upgrade-qt5-qtwebchannel
  • redhat-upgrade-qt5-qtwebchannel-debuginfo
  • redhat-upgrade-qt5-qtwebchannel-debugsource
  • redhat-upgrade-qt5-qtwebchannel-devel
  • redhat-upgrade-qt5-qtwebchannel-examples
  • redhat-upgrade-qt5-qtwebchannel-examples-debuginfo
  • redhat-upgrade-qt5-qtwebchannel-tests-debuginfo
  • redhat-upgrade-qt5-qtwebsockets
  • redhat-upgrade-qt5-qtwebsockets-debuginfo
  • redhat-upgrade-qt5-qtwebsockets-debugsource
  • redhat-upgrade-qt5-qtwebsockets-devel
  • redhat-upgrade-qt5-qtwebsockets-devel-debuginfo
  • redhat-upgrade-qt5-qtwebsockets-examples
  • redhat-upgrade-qt5-qtwebsockets-examples-debuginfo
  • redhat-upgrade-qt5-qtwebsockets-tests-debuginfo
  • redhat-upgrade-qt5-qtx11extras
  • redhat-upgrade-qt5-qtx11extras-debuginfo
  • redhat-upgrade-qt5-qtx11extras-debugsource
  • redhat-upgrade-qt5-qtx11extras-devel
  • redhat-upgrade-qt5-qtx11extras-tests-debuginfo
  • redhat-upgrade-qt5-qtxmlpatterns
  • redhat-upgrade-qt5-qtxmlpatterns-debuginfo
  • redhat-upgrade-qt5-qtxmlpatterns-debugsource
  • redhat-upgrade-qt5-qtxmlpatterns-devel
  • redhat-upgrade-qt5-qtxmlpatterns-devel-debuginfo
  • redhat-upgrade-qt5-qtxmlpatterns-examples
  • redhat-upgrade-qt5-qtxmlpatterns-examples-debuginfo
  • redhat-upgrade-qt5-qtxmlpatterns-tests-debuginfo
  • redhat-upgrade-qt5-rpm-macros
  • redhat-upgrade-qt5-srpm-macros
  • redhat-upgrade-sip
  • redhat-upgrade-sip-debuginfo
  • redhat-upgrade-sip-debugsource

insightVM

Advanced vulnerability management analytics and reporting.
Key Features
  • Lightweight Endpoint Agent
  • Live Dashboards
  • Real Risk Prioritization
  • IT-Integrated Remediation Projects
  • Cloud, Virtual, and Container Assessment
  • Integrated Threat Feeds
  • Easy-to-Use RESTful API
  • Automation-Assisted Patching
  • Automated Containment
Free InsightVM Trial View All Features

With Rapid7 live dashboards, I have a clear view of all the assets on my network, which ones can be exploited, and what I need to do in order to reduce the risk in my environment in real-time. No other tool gives us that kind of value and insight.

– Scott Cheney, Manager of Information Security, Sierra View Medical Center

;