An issue has been fixed in Qt versions 5.14.0 where QPluginLoader attempts to load plugins relative to the working directory, allowing attackers to execute arbitrary code via crafted files.
References
Link | Resource |
---|---|
https://codereview.qt-project.org/c/qt/qtbase/+/280730 | Patch Vendor Advisory |
Configurations
Information
Published : 2021-08-09 15:15
Updated : 2021-08-19 06:51
NVD link : CVE-2020-24742
Mitre link : CVE-2020-24742
JSON object : View
CWE
Products Affected
qt
- qt