{"id":"AZL-38737","summary":"CVE-2024-25580 affecting package qtbase for versions less than 6.6.2-1","details":"An issue was discovered in gui/util/qktxhandler.cpp in Qt before 5.15.17, 6.x before 6.2.12, 6.3.x through 6.5.x before 6.5.5, and 6.6.x before 6.6.2. A buffer overflow and application crash can occur via a crafted KTX image file.","modified":"2026-04-21T04:28:34.338399Z","published":"2024-03-27T03:15:12Z","upstream":["CVE-2024-25580"],"references":[{"type":"WEB","url":"https://nvd.nist.gov/vuln/detail/CVE-2024-25580"}],"affected":[{"package":{"name":"qtbase","ecosystem":"Azure Linux:3","purl":"pkg:rpm/azure-linux/qtbase"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"6.6.2-1"}]}],"database_specific":{"source":"https://github.com/microsoft/AzureLinuxVulnerabilityData/blob/main/osv/AZL-38737.json"}}],"schema_version":"1.7.5"}