Vulnerability Description
A vulnerability in applications created using Qt for Android prior to 5.9.3 allows attackers to alter environment variables via unspecified vectors.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Qt | Qt | < 5.9.3 |
References
- https://blog.qt.io/blog/2017/11/22/security-advisory-qt-android/Issue TrackingVendor Advisory
- https://jvn.jp/en/jp/JVN27342829/index.htmlIssue TrackingThird Party AdvisoryVDB Entry
- https://blog.qt.io/blog/2017/11/22/security-advisory-qt-android/Issue TrackingVendor Advisory
- https://jvn.jp/en/jp/JVN27342829/index.htmlIssue TrackingThird Party AdvisoryVDB Entry
FAQ
What is CVE-2017-10905?
CVE-2017-10905 is a vulnerability with a CVSS score of 5.3 (MEDIUM). A vulnerability in applications created using Qt for Android prior to 5.9.3 allows attackers to alter environment variables via unspecified vectors.
How severe is CVE-2017-10905?
CVE-2017-10905 has been rated MEDIUM with a CVSS base score of 5.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2017-10905?
Check the references section above for vendor advisories and patch information. Affected products include: Qt Qt.