CVE Tools

Trolltech

3 CVEs tracked since 2004. Since Aug 2004, none of them reached CISA KEV.

Trolltech CVEs per month

Aug 2004 to Aug 2004. Point at a month, or focus the strip and use the arrow keys.
Trolltech CVEs per month, with the share now in CISA KEV
MonthCVEsIn CISA KEV
2004-0830

Products

The products that kept showing up in Trolltech's monthly top three, with their CVEs summed over those months.

  1. Qt31 month

Latest CVEs

The 9 most recently published vulnerabilities affecting Trolltech.

  1. CVE-2007-5965QSslSocket in Trolltech Qt 4.3.0 through 4.3.2 does not properly verify SSL certificates, which might make it easier for remote attackers to trick a user into accepting an invalid server certificat...4.3
  2. CVE-2007-4137Off-by-one error in the QUtf8Decoder::toUnicode function in Trolltech Qt 3 allows context-dependent attackers to cause a denial of service (crash) via a crafted Unicode string that triggers a heap-...7.5
  3. CVE-2007-3388Multiple format string vulnerabilities in (1) qtextedit.cpp, (2) qdatatable.cpp, (3) qsqldatabase.cpp, (4) qsqlindex.cpp, (5) qsqlrecord.cpp, (6) qglobal.cpp, and (7) qsvgdevice.cpp in QTextEdit in...6.8
  4. CVE-2002-1883Trolltech Qt Assistant 1.0 in Trolltech Qt 3.0.3, when loaded from the Designer, opens port 7358 for interprocess communication, which allows remote attackers to open arbitrary HTML pages and cause...6.4
  5. CVE-2005-0627Qt before 3.3.4 searches the BUILD_PREFIX directory, which could be world-writable, to load shared libraries regardless of the LD_LIBRARY_PATH environment variable, which allows local users to exec...4.6
  6. CVE-2004-0691Heap-based buffer overflow in the BMP image format parser for the QT library (qt3) before 3.3.3 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitra...7.5
  7. CVE-2004-0693The GIF parser in the QT library (qt3) before 3.3.3 allows remote attackers to cause a denial of service (application crash) via a malformed image file that triggers a null dereference, a different...5.0
  8. CVE-2004-0692The XPM parser in the QT library (qt3) before 3.3.3 allows remote attackers to cause a denial of service (application crash) via a malformed image file that triggers a null dereference, a different...5.0
  9. CVE-2001-1113Buffer overflow in TrollFTPD 1.26 and earlier allows local users to execute arbitrary code by creating a series of deeply nested directories with long names, then running the ls -R (recursive) comm...10.0

The record

Peak rank
#9 in Aug 2004
Busiest month shown
Aug 2004, 3 CVEs
Months with a KEV entry
0 since Aug 2004
Monthly snapshots
1 since 2004
Trolltech's full record, month by month

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store