UBUNTU-CVE-2023-45935

Source
https://ubuntu.com/security/CVE-2023-45935
Import Source
https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2023/UBUNTU-CVE-2023-45935.json
JSON Data
https://api.osv.dev/v1/vulns/UBUNTU-CVE-2023-45935
Withdrawn
2025-06-23T15:56:55Z
Published
2024-03-27T05:15:00Z
Modified
2024-03-27T05:15:00Z
Summary
[none]
Details

** DISPUTED ** Qt 6 through 6.6 was discovered to contain a NULL pointer dereference via the function QXcbConnection::initializeAllAtoms(). NOTE: this is disputed because it is not expected that an X application should continue to run when there is arbitrary anomalous behavior from the X server.

References

Affected packages

Ubuntu:22.04:LTS / qt6-base

Package

Name
qt6-base
Purl
pkg:deb/ubuntu/qt6-base

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

6.*
6.2.2+dfsg-5ubuntu1
6.2.2+dfsg-6ubuntu1
6.2.2+dfsg-6ubuntu2
6.2.4+dfsg-1ubuntu1
6.2.4+dfsg-2ubuntu1
6.2.4+dfsg-2ubuntu1.1

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2023/UBUNTU-CVE-2023-45935.json"

Ubuntu:24.04:LTS / qt6-base

Package

Name
qt6-base
Purl
pkg:deb/ubuntu/qt6-base

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

6.*
6.4.2+dfsg-18
6.4.2+dfsg-19
6.4.2+dfsg-19build1
6.4.2+dfsg-20
6.4.2+dfsg-21
6.4.2+dfsg-21.1build4
6.4.2+dfsg-21.1build5

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2023/UBUNTU-CVE-2023-45935.json"