info
discussion
exploit
solution
references
Trolltech Qt QSslSocket Class Certificate Verification Security Bypass Vulnerability
Solution:
The vendor released patches for this issue. Please see the references for more information.
Trolltech Qt 4.3
Trolltech 190133.patch
http://www.trolltech.com/developer/download/190133.patch
Trolltech qt-mac-opensource-src-4.3.3.tar.gz (Mac OS)
http://www.trolltech.com/download?target=http://ftp.iasi.roedu.net/mir rors/ftp.trolltech.com/qt/source/qt-mac-opensource-src-4.3.3.tar.gz
Trolltech qt-win-opensource-src-4.3.3.zip (Windows)
http://www.trolltech.com/download?target=http://ftp.ntua.gr/pub/X11/Qt /qt/source/qt-win-opensource-src-4.3.3.zip
Trolltech qt-x11-opensource-src-4.3.3.tar.gz (X11)
http://www.trolltech.com/download?target=http://ftp.iasi.roedu.net/mir rors/ftp.trolltech.com/qt/source/qt-x11-opensource-src-4.3.3.tar.gz
Trolltech Qt 4.3.1
Trolltech 190133.patch
http://www.trolltech.com/developer/download/190133.patch
Trolltech qt-mac-opensource-src-4.3.3.tar.gz (Mac OS)
http://www.trolltech.com/download?target=http://ftp.iasi.roedu.net/mir rors/ftp.trolltech.com/qt/source/qt-mac-opensource-src-4.3.3.tar.gz
Trolltech qt-win-opensource-src-4.3.3.zip (Windows)
http://www.trolltech.com/download?target=http://ftp.ntua.gr/pub/X11/Qt /qt/source/qt-win-opensource-src-4.3.3.zip
Trolltech qt-x11-opensource-src-4.3.3.tar.gz (X11)
http://www.trolltech.com/download?target=http://ftp.iasi.roedu.net/mir rors/ftp.trolltech.com/qt/source/qt-x11-opensource-src-4.3.3.tar.gz
Trolltech Qt 4.3.2
Trolltech 190133.patch
http://www.trolltech.com/developer/download/190133.patch
Trolltech qt-mac-opensource-src-4.3.3.tar.gz (Mac OS)
http://www.trolltech.com/download?target=http://ftp.iasi.roedu.net/mir rors/ftp.trolltech.com/qt/source/qt-mac-opensource-src-4.3.3.tar.gz
Trolltech qt-win-opensource-src-4.3.3.zip (Windows)
http://www.trolltech.com/download?target=http://ftp.ntua.gr/pub/X11/Qt /qt/source/qt-win-opensource-src-4.3.3.zip
Trolltech qt-x11-opensource-src-4.3.3.tar.gz (X11)
http://www.trolltech.com/download?target=http://ftp.iasi.roedu.net/mir rors/ftp.trolltech.com/qt/source/qt-x11-opensource-src-4.3.3.tar.gz
Privacy Statement
Copyright 2010, SecurityFocus