A vulnerability, which was classified as critical, was found in hughsk flat up to 5.0.0. This affects the function unflatten of the file index.js. The manipulation leads to improperly controlled modification of object prototype attributes ('prototype pollution'). It is possible to initiate the attack remotely. Upgrading to version 5.0.1 is able to address this issue. The name of the patch is 20ef0ef55dfa028caddaedbcb33efbdb04d18e13. It is recommended to upgrade the affected component. The identifier VDB-216777 was assigned to this vulnerability.
{
"binaries": [
{
"binary_name": "libqt6pdf6",
"binary_version": "6.2.4+dfsg-6ubuntu1"
},
{
"binary_name": "libqt6pdfquick6",
"binary_version": "6.2.4+dfsg-6ubuntu1"
},
{
"binary_name": "libqt6pdfwidgets6",
"binary_version": "6.2.4+dfsg-6ubuntu1"
},
{
"binary_name": "libqt6webengine6-data",
"binary_version": "6.2.4+dfsg-6ubuntu1"
},
{
"binary_name": "libqt6webenginecore6",
"binary_version": "6.2.4+dfsg-6ubuntu1"
},
{
"binary_name": "libqt6webenginecore6-bin",
"binary_version": "6.2.4+dfsg-6ubuntu1"
},
{
"binary_name": "libqt6webenginequick6",
"binary_version": "6.2.4+dfsg-6ubuntu1"
},
{
"binary_name": "libqt6webenginequickdelegatesqml6",
"binary_version": "6.2.4+dfsg-6ubuntu1"
},
{
"binary_name": "libqt6webenginewidgets6",
"binary_version": "6.2.4+dfsg-6ubuntu1"
},
{
"binary_name": "qml6-module-qtquick-pdf",
"binary_version": "6.2.4+dfsg-6ubuntu1"
},
{
"binary_name": "qml6-module-qtwebengine",
"binary_version": "6.2.4+dfsg-6ubuntu1"
},
{
"binary_name": "qml6-module-qtwebengine-controlsdelegates",
"binary_version": "6.2.4+dfsg-6ubuntu1"
},
{
"binary_name": "qt6-image-formats-plugin-pdf",
"binary_version": "6.2.4+dfsg-6ubuntu1"
},
{
"binary_name": "qt6-pdf-dev",
"binary_version": "6.2.4+dfsg-6ubuntu1"
},
{
"binary_name": "qt6-webengine-dev",
"binary_version": "6.2.4+dfsg-6ubuntu1"
},
{
"binary_name": "qt6-webengine-dev-tools",
"binary_version": "6.2.4+dfsg-6ubuntu1"
},
{
"binary_name": "qt6-webengine-private-dev",
"binary_version": "6.2.4+dfsg-6ubuntu1"
}
]
}
{
"binaries": [
{
"binary_name": "libqt6pdf6",
"binary_version": "6.4.2-final+dfsg-12ubuntu9"
},
{
"binary_name": "libqt6pdfquick6",
"binary_version": "6.4.2-final+dfsg-12ubuntu9"
},
{
"binary_name": "libqt6pdfwidgets6",
"binary_version": "6.4.2-final+dfsg-12ubuntu9"
},
{
"binary_name": "libqt6webengine6-data",
"binary_version": "6.4.2-final+dfsg-12ubuntu9"
},
{
"binary_name": "libqt6webenginecore6",
"binary_version": "6.4.2-final+dfsg-12ubuntu9"
},
{
"binary_name": "libqt6webenginecore6-bin",
"binary_version": "6.4.2-final+dfsg-12ubuntu9"
},
{
"binary_name": "libqt6webenginequick6",
"binary_version": "6.4.2-final+dfsg-12ubuntu9"
},
{
"binary_name": "libqt6webenginequickdelegatesqml6",
"binary_version": "6.4.2-final+dfsg-12ubuntu9"
},
{
"binary_name": "libqt6webenginewidgets6",
"binary_version": "6.4.2-final+dfsg-12ubuntu9"
},
{
"binary_name": "qml6-module-qtquick-pdf",
"binary_version": "6.4.2-final+dfsg-12ubuntu9"
},
{
"binary_name": "qml6-module-qtwebengine",
"binary_version": "6.4.2-final+dfsg-12ubuntu9"
},
{
"binary_name": "qml6-module-qtwebengine-controlsdelegates",
"binary_version": "6.4.2-final+dfsg-12ubuntu9"
},
{
"binary_name": "qt6-image-formats-plugin-pdf",
"binary_version": "6.4.2-final+dfsg-12ubuntu9"
},
{
"binary_name": "qt6-pdf-dev",
"binary_version": "6.4.2-final+dfsg-12ubuntu9"
},
{
"binary_name": "qt6-webengine-dev",
"binary_version": "6.4.2-final+dfsg-12ubuntu9"
},
{
"binary_name": "qt6-webengine-dev-tools",
"binary_version": "6.4.2-final+dfsg-12ubuntu9"
},
{
"binary_name": "qt6-webengine-doc-dev",
"binary_version": "6.4.2-final+dfsg-12ubuntu9"
},
{
"binary_name": "qt6-webengine-doc-html",
"binary_version": "6.4.2-final+dfsg-12ubuntu9"
},
{
"binary_name": "qt6-webengine-examples",
"binary_version": "6.4.2-final+dfsg-12ubuntu9"
},
{
"binary_name": "qt6-webengine-private-dev",
"binary_version": "6.4.2-final+dfsg-12ubuntu9"
}
]
}
{
"binaries": [
{
"binary_name": "libqt6pdf6",
"binary_version": "6.9.2+dfsg-2"
},
{
"binary_name": "libqt6pdfquick6",
"binary_version": "6.9.2+dfsg-2"
},
{
"binary_name": "libqt6pdfwidgets6",
"binary_version": "6.9.2+dfsg-2"
},
{
"binary_name": "libqt6webengine6-data",
"binary_version": "6.9.2+dfsg-2"
},
{
"binary_name": "libqt6webenginecore6",
"binary_version": "6.9.2+dfsg-2"
},
{
"binary_name": "libqt6webenginecore6-bin",
"binary_version": "6.9.2+dfsg-2"
},
{
"binary_name": "libqt6webenginequick6",
"binary_version": "6.9.2+dfsg-2"
},
{
"binary_name": "libqt6webenginewidgets6",
"binary_version": "6.9.2+dfsg-2"
},
{
"binary_name": "qml6-module-qtquick-pdf",
"binary_version": "6.9.2+dfsg-2"
},
{
"binary_name": "qml6-module-qtwebengine",
"binary_version": "6.9.2+dfsg-2"
},
{
"binary_name": "qml6-module-qtwebengine-controlsdelegates",
"binary_version": "6.9.2+dfsg-2"
},
{
"binary_name": "qt6-image-formats-plugin-pdf",
"binary_version": "6.9.2+dfsg-2"
},
{
"binary_name": "qt6-pdf-dev",
"binary_version": "6.9.2+dfsg-2"
},
{
"binary_name": "qt6-pdf-private-dev",
"binary_version": "6.9.2+dfsg-2"
},
{
"binary_name": "qt6-webengine-dev",
"binary_version": "6.9.2+dfsg-2"
},
{
"binary_name": "qt6-webengine-dev-tools",
"binary_version": "6.9.2+dfsg-2"
},
{
"binary_name": "qt6-webengine-doc-dev",
"binary_version": "6.9.2+dfsg-2"
},
{
"binary_name": "qt6-webengine-doc-html",
"binary_version": "6.9.2+dfsg-2"
},
{
"binary_name": "qt6-webengine-examples",
"binary_version": "6.9.2+dfsg-2"
},
{
"binary_name": "qt6-webengine-private-dev",
"binary_version": "6.9.2+dfsg-2"
}
]
}
{
"binaries": [
{
"binary_name": "libqt6pdf6",
"binary_version": "6.8.3+dfsg-0ubuntu1"
},
{
"binary_name": "libqt6pdfquick6",
"binary_version": "6.8.3+dfsg-0ubuntu1"
},
{
"binary_name": "libqt6pdfwidgets6",
"binary_version": "6.8.3+dfsg-0ubuntu1"
},
{
"binary_name": "libqt6webengine6-data",
"binary_version": "6.8.3+dfsg-0ubuntu1"
},
{
"binary_name": "libqt6webenginecore6",
"binary_version": "6.8.3+dfsg-0ubuntu1"
},
{
"binary_name": "libqt6webenginecore6-bin",
"binary_version": "6.8.3+dfsg-0ubuntu1"
},
{
"binary_name": "libqt6webenginequick6",
"binary_version": "6.8.3+dfsg-0ubuntu1"
},
{
"binary_name": "libqt6webenginewidgets6",
"binary_version": "6.8.3+dfsg-0ubuntu1"
},
{
"binary_name": "qml6-module-qtquick-pdf",
"binary_version": "6.8.3+dfsg-0ubuntu1"
},
{
"binary_name": "qml6-module-qtwebengine",
"binary_version": "6.8.3+dfsg-0ubuntu1"
},
{
"binary_name": "qml6-module-qtwebengine-controlsdelegates",
"binary_version": "6.8.3+dfsg-0ubuntu1"
},
{
"binary_name": "qt6-image-formats-plugin-pdf",
"binary_version": "6.8.3+dfsg-0ubuntu1"
},
{
"binary_name": "qt6-pdf-dev",
"binary_version": "6.8.3+dfsg-0ubuntu1"
},
{
"binary_name": "qt6-webengine-dev",
"binary_version": "6.8.3+dfsg-0ubuntu1"
},
{
"binary_name": "qt6-webengine-dev-tools",
"binary_version": "6.8.3+dfsg-0ubuntu1"
},
{
"binary_name": "qt6-webengine-doc-dev",
"binary_version": "6.8.3+dfsg-0ubuntu1"
},
{
"binary_name": "qt6-webengine-doc-html",
"binary_version": "6.8.3+dfsg-0ubuntu1"
},
{
"binary_name": "qt6-webengine-examples",
"binary_version": "6.8.3+dfsg-0ubuntu1"
},
{
"binary_name": "qt6-webengine-private-dev",
"binary_version": "6.8.3+dfsg-0ubuntu1"
}
]
}