An issue was discovered in Qt through 5.12.9, and 5.13.x through 5.15.x before 5.15.1. readxbmbody in gui/image/qxbmhandler.cpp has a buffer over-read.
{
"unresolved_ranges": [
{
"extracted_events": [
{
"introduced": "9.0"
},
{
"last_affected": "9.0"
}
],
"vendor_product": "debian:debian_linux",
"source": "CPE_STRING",
"cpes": [
"cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*"
]
},
{
"extracted_events": [
{
"introduced": "31"
},
{
"last_affected": "31"
},
{
"introduced": "32"
},
{
"last_affected": "32"
}
],
"vendor_product": "fedoraproject:fedora",
"source": "CPE_STRING",
"cpes": [
"cpe:2.3:o:fedoraproject:fedora:31:*:*:*:*:*:*:*",
"cpe:2.3:o:fedoraproject:fedora:32:*:*:*:*:*:*:*"
]
}
]
}{
"extracted_events": [
{
"introduced": "0"
},
{
"last_affected": "5.12.9"
},
{
"introduced": "5.13.0"
},
{
"fixed": "5.15.1"
}
],
"cpe": "cpe:2.3:a:qt:qt:*:*:*:*:*:*:*:*",
"source": "CPE_RANGE"
}{
"extracted_events": [
{
"introduced": "0"
},
{
"last_affected": "5.12.9"
},
{
"introduced": "5.13.0"
},
{
"fixed": "5.15.1"
}
],
"cpe": "cpe:2.3:a:qt:qt:*:*:*:*:*:*:*:*",
"source": "CPE_RANGE"
}[
{
"signature_version": "v1",
"deprecated": false,
"digest": {
"threshold": 0.9,
"line_hashes": [
"242641743284928064626071892920657218794",
"106416120088075135311219627565149925684",
"6689681501335192734927767907587321295",
"249325656759426096807140923297702562064"
]
},
"id": "CVE-2020-17507-edb2cdac",
"signature_type": "Line",
"source": "https://github.com/qt/qtbase/commit/e4961b35deb202525d4711dbb14f8c2bb0bf5c26",
"target": {
"file": "src/corelib/tools/qvector.h"
}
}
]
"2026-07-08T20:30:37Z"
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2020-17507.json"