Debian Patches

Status for qt6-svg/6.10.2-7

Patch Description Author Forwarded Bugs Origin Last update
CVE-2026-6210.diff Test types of nodes before downcasting them
A bad cast in QSvgMarker::drawHelper lead to an endless recursion
resulting in a heap overflow. Credit to OSS-Fuzz which found this as
issue 496327371.

Amends 534d072fe9c060ca3d1b968a717513426c69c956

While fixing that, I found another, similar case and fixed it, too,
although it didn't seem to cause a crash.

Amends 29b848e9ac4e4e13c5b50116a81b1f2677196939

(cherry picked from commit e488f852fa18c2afc2842a88eff8f66ad4105a45)
(cherry picked from commit 8368ba6ff143bd6b9a7fdf235918285d9b1f5d2a)
Robert Löhning <robert.loehning@qt.io> no 2026-03-26

All known versions for source package 'qt6-svg'

Links