CVE-2025-30348

encodeText in QDom in Qt before 6.8.0 has a complex algorithm involving XML string copy and inline replacement of parts of a string (with relocation of later data).
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:qt:qt:*:*:*:*:*:*:*:*
cpe:2.3:a:qt:qt:*:*:*:*:*:*:*:*
cpe:2.3:a:qt:qt:*:*:*:*:*:*:*:*

History

24 Mar 2025, 14:08

Type Values Removed Values Added
Summary
  • (es) encodeText en QDom en Qt anterior a 6.8.0 tiene un algoritmo complejo que implica la copia de una cadena XML y el reemplazo en línea de partes de una cadena (con reubicación de datos posteriores).
References () https://codereview.qt-project.org/c/qt/qtbase/+/581442 - () https://codereview.qt-project.org/c/qt/qtbase/+/581442 - Patch
CPE cpe:2.3:a:qt:qt:*:*:*:*:*:*:*:*
First Time Qt
Qt qt

21 Mar 2025, 07:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-03-21 07:15

Updated : 2025-03-24 14:08


NVD link : CVE-2025-30348

Mitre link : CVE-2025-30348

CVE.ORG link : CVE-2025-30348


JSON object : View

Products Affected

qt

  • qt
CWE
CWE-407

Inefficient Algorithmic Complexity