SuSE 11.2 Security Update : libqt4 (SAT Patch Number 7441)

Medium Nessus Plugin ID 65568


The remote SuSE 11 host is missing one or more security updates.


libqt4 has been updated to fix several security issues.

- An information disclosure via QSharedMemory was fixed which allowed local attackers to read information (e.g.
bitmap content) from the attacked user. (CVE-2013-0254)

- openssl-incompatibility-fix.diff: Fix wrong error reporting when using a binary incompatible version of openSSL. (bnc#797006, CVE-2012-6093)

- Various compromised SSL root certificates were blacklisted. Also a non-security bugfix has been applied :

- Add fix for qdbusviewer not matching args (bnc#784197)


Apply SAT patch number 7441.

See Also

Plugin Details

Severity: Medium

ID: 65568

File Name: suse_11_libQtWebKit-devel-130302.nasl

Version: $Revision: 1.2 $

Type: local

Agent: unix

Published: 2013/03/15

Modified: 2013/10/25

Dependencies: 12634

Risk Information

Risk Factor: Medium


Base Score: 4.3

Vector: CVSS2#AV:N/AC:M/Au:N/C:P/I:N/A:N

Vulnerability Information

CPE: p-cpe:/a:novell:suse_linux:11:libQtWebKit4, p-cpe:/a:novell:suse_linux:11:libQtWebKit4-32bit, p-cpe:/a:novell:suse_linux:11:libqt4, p-cpe:/a:novell:suse_linux:11:libqt4-32bit, p-cpe:/a:novell:suse_linux:11:libqt4-qt3support, p-cpe:/a:novell:suse_linux:11:libqt4-qt3support-32bit, p-cpe:/a:novell:suse_linux:11:libqt4-sql, p-cpe:/a:novell:suse_linux:11:libqt4-sql-32bit, p-cpe:/a:novell:suse_linux:11:libqt4-sql-mysql, p-cpe:/a:novell:suse_linux:11:libqt4-sql-sqlite, p-cpe:/a:novell:suse_linux:11:libqt4-x11, p-cpe:/a:novell:suse_linux:11:libqt4-x11-32bit, p-cpe:/a:novell:suse_linux:11:qt4-x11-tools, cpe:/o:novell:suse_linux:11

Required KB Items: Host/local_checks_enabled, Host/cpu, Host/SuSE/release, Host/SuSE/rpm-list

Patch Publication Date: 2013/03/02

Reference Information

CVE: CVE-2012-6093, CVE-2013-0254