← Back

CVE-2014-3755

nvd nist
Published: Nov 16, 2014Modified: May 6, 2026

JSON object

Loading...
5.0
Vector
AV:N/AC:L/Au:N/C:N/I:N/A:P
Exploitability: 10.0 / Impact: 2.9
Source: NVD

Description

The QSvg module in Qt, as used in the Mumble client 1.2.x before 1.2.6, allows remote attackers to cause a denial of service (hang and resource consumption) via a local file reference in an (1) image tag or (2) XML stylesheet in an SVG file.

Affected (11)

Products: Mumble: Mumble
1 product
Mumble
Configuration A
11 vulnerable
Vulnerable SoftwareAffected Versions
Mumble
Up to 1.2.5
Version 1.2.0
Version 1.2.1
Version 1.2.2
Version 1.2.3
Version 1.2.3 rc1
Version 1.2.3 rc2
Version 1.2.3 rc3
Version 1.2.4
Version 1.2.4 beta1
Version 1.2.4 rc1

Related CWEs

Timeline

No history available yet.