trolltech records
9 published records for vendor trolltech.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 3
- With a fix record
- 55.6%
- Median publish → KEV
- No record has entered KEV
Records by year
Bar: total · dark part: CISA KEV.
Recurring classes
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer1
- CWE-264 Permissions, Privileges, and Access Controls1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
9 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
41Plan | CVE-2001-1113No exploit | Buffer overflow in TrollFTPD 1.26 and earlier allows local users to execute arbitrary code by creating a series of deeply nested directoriestrolltech · trollftpd | Critical10.0 | — | 4.3% | Aug 13, 2001 |
34Monitor | CVE-2004-0691Proof of concept | Heap-based buffer overflow in the BMP image format parser for the QT library (qt3) before 3.3.3 allows remote attackers to cause a denial oftrolltech · qt | High7.5 | — | 14.7% | Sep 28, 2004 |
31Monitor | CVE-2007-4137No exploit | Off-by-one error in the QUtf8Decoder::toUnicode function in Trolltech Qt 3 allows context-dependent attackers to cause a denial of service (trolltech · qt · CWE-119 | High7.5 | — | 2.3% | Sep 18, 2007 |
28Monitor | CVE-2007-3388No exploit | Multiple format string vulnerabilities in (1) qtextedit.cpp, (2) qdatatable.cpp, (3) qsqldatabase.cpp, (4) qsqlindex.cpp, (5) qsqlrecord.cpptrolltech · qt | Medium6.8 | — | 4.2% | Aug 3, 2007 |
25Monitor | CVE-2002-1883No exploit | Trolltech Qt Assistant 1.0 in Trolltech Qt 3.0.3, when loaded from the Designer, opens port 7358 for interprocess communication, which allowtrolltech · qt assistant | Medium6.4 | — | 1.6% | Dec 31, 2002 |
21Monitor | CVE-2004-0692No exploit | The XPM parser in the QT library (qt3) before 3.3.3 allows remote attackers to cause a denial of service (application crash) via a malformedtrolltech · qt | Medium5.0 | — | 3.4% | Sep 28, 2004 |
21Monitor | CVE-2004-0693No exploit | The GIF parser in the QT library (qt3) before 3.3.3 allows remote attackers to cause a denial of service (application crash) via a malformedtrolltech · qt | Medium5.0 | — | 2.9% | Sep 28, 2004 |
18Monitor | CVE-2005-0627No exploit | Qt before 3.3.4 searches the BUILD_PREFIX directory, which could be world-writable, to load shared libraries regardless of the LD_LIBRARY_PAtrolltech · qt | Medium4.6 | — | 0.4% | May 2, 2005 |
17Monitor | CVE-2007-5965No exploit | QSslSocket in Trolltech Qt 4.3.0 through 4.3.2 does not properly verify SSL certificates, which might make it easier for remote attackers totrolltech · qsslsocket · CWE-264 | Medium4.3 | — | 1.3% | Jan 7, 2008 |
- CVE-2001-111341Plan
Buffer overflow in TrollFTPD 1.26 and earlier allows local users to execute arbitrary code by creating a series of deeply nested directories
CriticalCVSS 10.0No exploitEPSS 4%trolltech · trollftpdAug 13, 2001
- CVE-2004-069134Monitor
Heap-based buffer overflow in the BMP image format parser for the QT library (qt3) before 3.3.3 allows remote attackers to cause a denial of
HighCVSS 7.5Proof of conceptEPSS 15%trolltech · qtSep 28, 2004
- CVE-2007-413731Monitor
Off-by-one error in the QUtf8Decoder::toUnicode function in Trolltech Qt 3 allows context-dependent attackers to cause a denial of service (
HighCVSS 7.5No exploitEPSS 2%trolltech · qtSep 18, 2007
- CVE-2007-338828Monitor
Multiple format string vulnerabilities in (1) qtextedit.cpp, (2) qdatatable.cpp, (3) qsqldatabase.cpp, (4) qsqlindex.cpp, (5) qsqlrecord.cpp
MediumCVSS 6.8No exploitEPSS 4%trolltech · qtAug 3, 2007
- CVE-2002-188325Monitor
Trolltech Qt Assistant 1.0 in Trolltech Qt 3.0.3, when loaded from the Designer, opens port 7358 for interprocess communication, which allow
MediumCVSS 6.4No exploitEPSS 2%trolltech · qt assistantDec 31, 2002
- CVE-2004-069221Monitor
The XPM parser in the QT library (qt3) before 3.3.3 allows remote attackers to cause a denial of service (application crash) via a malformed
MediumCVSS 5.0No exploitEPSS 3%trolltech · qtSep 28, 2004
- CVE-2004-069321Monitor
The GIF parser in the QT library (qt3) before 3.3.3 allows remote attackers to cause a denial of service (application crash) via a malformed
MediumCVSS 5.0No exploitEPSS 3%trolltech · qtSep 28, 2004
- CVE-2005-062718Monitor
Qt before 3.3.4 searches the BUILD_PREFIX directory, which could be world-writable, to load shared libraries regardless of the LD_LIBRARY_PA
MediumCVSS 4.6No exploitEPSS 0%trolltech · qtMay 2, 2005
- CVE-2007-596517Monitor
QSslSocket in Trolltech Qt 4.3.0 through 4.3.2 does not properly verify SSL certificates, which might make it easier for remote attackers to
MediumCVSS 4.3No exploitEPSS 1%trolltech · qsslsocketJan 7, 2008