{"id":"MGASA-2021-0262","summary":"Updated qt4 and qtsvg5 packages fix a security vulnerability","details":"An out of bounds read in function QRadialFetchSimd from crafted svg file may\nlead to information disclosure or other potential consequences. This update\nincludes the backported upstream fix and should resolve the security issue \n(CVE-2021-3481).\n","modified":"2026-04-16T00:12:19.219209551Z","published":"2021-06-16T20:22:25Z","upstream":["CVE-2021-3481"],"references":[{"type":"ADVISORY","url":"https://advisories.mageia.org/MGASA-2021-0262.html"},{"type":"REPORT","url":"https://bugs.mageia.org/show_bug.cgi?id=29014"},{"type":"WEB","url":"https://bugreports.qt.io/browse/QTBUG-91507"},{"type":"WEB","url":"https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/thread/O57HZYEVZNCW5L74PDD7K44E7XZEBXRK/"},{"type":"WEB","url":"https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/thread/GOBQ75US43TETW2OID6APHQRENDFK4BO/"}],"affected":[{"package":{"name":"qt4","ecosystem":"Mageia:7","purl":"pkg:rpm/mageia/qt4?arch=source&distro=mageia-7"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"4.8.7-26.3.mga7"}]}],"ecosystem_specific":{"section":"core"},"database_specific":{"source":"https://advisories.mageia.org/MGASA-2021-0262.json"}},{"package":{"name":"qtsvg5","ecosystem":"Mageia:7","purl":"pkg:rpm/mageia/qtsvg5?arch=source&distro=mageia-7"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"5.12.6-1.1.mga7"}]}],"ecosystem_specific":{"section":"core"},"database_specific":{"source":"https://advisories.mageia.org/MGASA-2021-0262.json"}},{"package":{"name":"qt4","ecosystem":"Mageia:8","purl":"pkg:rpm/mageia/qt4?arch=source&distro=mageia-8"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"4.8.7-35.1.mga8"}]}],"ecosystem_specific":{"section":"core"},"database_specific":{"source":"https://advisories.mageia.org/MGASA-2021-0262.json"}},{"package":{"name":"qtsvg5","ecosystem":"Mageia:8","purl":"pkg:rpm/mageia/qtsvg5?arch=source&distro=mageia-8"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"5.15.2-1.1.mga8"}]}],"ecosystem_specific":{"section":"core"},"database_specific":{"source":"https://advisories.mageia.org/MGASA-2021-0262.json"}}],"schema_version":"1.7.5","credits":[{"name":"Mageia","contact":["https://wiki.mageia.org/en/Packages_Security_Team"],"type":"COORDINATOR"}]}