// For flags

CVE-2013-0254

qt: QSharedMemory class created shared memory segments with insecure permissions

Severity Score

5.5
*CVSS v3

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

The QSharedMemory class in Qt 5.0.0, 4.8.x before 4.8.5, 4.7.x before 4.7.6, and other versions including 4.4.0 uses weak permissions (world-readable and world-writable) for shared memory segments, which allows local users to read sensitive information or modify critical program data, as demonstrated by reading a pixmap being sent to an X server.

La clase QSharedMemory en Qt v5.0.0, v4.8.x anterior a v4.8.5, v4.7.x anterior a v4.7.6, y otras versiones incluida la v4.4.0 utiliza permisos débiles (escritura y lectura para todos los usuarios) para segmentos de memoria compartida, lo que permite a usuarios locales leer informacion sensible o modificar datos críticos del programa, como se demostró mediante la lectura de un pixmap enviado al servidor X.

Qt is a software toolkit that simplifies the task of writing and maintaining GUI applications for the X Window System. It was discovered that the QSharedMemory class implementation of the Qt toolkit created shared memory segments with insecure permissions. A local attacker could use this flaw to read or alter the contents of a particular shared memory segment, possibly leading to their ability to obtain sensitive information or influence the behavior of a process that is using the shared memory segment.

*Credits: N/A
CVSS Scores
Attack Vector
Local
Attack Complexity
Low
Privileges Required
Low
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
None
Availability
None
Attack Vector
Local
Attack Complexity
Low
Authentication
None
Confidentiality
Partial
Integrity
Partial
Availability
None
Attack Vector
Local
Attack Complexity
Medium
Authentication
None
Confidentiality
Partial
Integrity
Partial
Availability
Partial
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2012-12-06 CVE Reserved
  • 2013-02-06 CVE Published
  • 2024-08-06 CVE Updated
  • 2025-06-03 EPSS Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-264: Permissions, Privileges, and Access Controls
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Qt
Search vendor "Qt"
Qt
Search vendor "Qt" for product "Qt"
1.41
Search vendor "Qt" for product "Qt" and version "1.41"
-
Affected
Qt
Search vendor "Qt"
Qt
Search vendor "Qt" for product "Qt"
1.42
Search vendor "Qt" for product "Qt" and version "1.42"
-
Affected
Qt
Search vendor "Qt"
Qt
Search vendor "Qt" for product "Qt"
1.43
Search vendor "Qt" for product "Qt" and version "1.43"
-
Affected
Qt
Search vendor "Qt"
Qt
Search vendor "Qt" for product "Qt"
1.44
Search vendor "Qt" for product "Qt" and version "1.44"
-
Affected
Qt
Search vendor "Qt"
Qt
Search vendor "Qt" for product "Qt"
1.45
Search vendor "Qt" for product "Qt" and version "1.45"
-
Affected
Qt
Search vendor "Qt"
Qt
Search vendor "Qt" for product "Qt"
2.0.0
Search vendor "Qt" for product "Qt" and version "2.0.0"
-
Affected
Qt
Search vendor "Qt"
Qt
Search vendor "Qt" for product "Qt"
2.0.1
Search vendor "Qt" for product "Qt" and version "2.0.1"
-
Affected
Qt
Search vendor "Qt"
Qt
Search vendor "Qt" for product "Qt"
2.0.2
Search vendor "Qt" for product "Qt" and version "2.0.2"
-
Affected
Qt
Search vendor "Qt"
Qt
Search vendor "Qt" for product "Qt"
3.3.0
Search vendor "Qt" for product "Qt" and version "3.3.0"
-
Affected
Qt
Search vendor "Qt"
Qt
Search vendor "Qt" for product "Qt"
3.3.1
Search vendor "Qt" for product "Qt" and version "3.3.1"
-
Affected
Qt
Search vendor "Qt"
Qt
Search vendor "Qt" for product "Qt"
3.3.2
Search vendor "Qt" for product "Qt" and version "3.3.2"
-
Affected
Qt
Search vendor "Qt"
Qt
Search vendor "Qt" for product "Qt"
3.3.3
Search vendor "Qt" for product "Qt" and version "3.3.3"
-
Affected
Qt
Search vendor "Qt"
Qt
Search vendor "Qt" for product "Qt"
3.3.4
Search vendor "Qt" for product "Qt" and version "3.3.4"
-
Affected
Qt
Search vendor "Qt"
Qt
Search vendor "Qt" for product "Qt"
3.3.5
Search vendor "Qt" for product "Qt" and version "3.3.5"
-
Affected
Qt
Search vendor "Qt"
Qt
Search vendor "Qt" for product "Qt"
3.3.6
Search vendor "Qt" for product "Qt" and version "3.3.6"
-
Affected
Qt
Search vendor "Qt"
Qt
Search vendor "Qt" for product "Qt"
4.0.0
Search vendor "Qt" for product "Qt" and version "4.0.0"
-
Affected
Qt
Search vendor "Qt"
Qt
Search vendor "Qt" for product "Qt"
4.0.1
Search vendor "Qt" for product "Qt" and version "4.0.1"
-
Affected
Qt
Search vendor "Qt"
Qt
Search vendor "Qt" for product "Qt"
4.1.0
Search vendor "Qt" for product "Qt" and version "4.1.0"
-
Affected
Qt
Search vendor "Qt"
Qt
Search vendor "Qt" for product "Qt"
4.1.1
Search vendor "Qt" for product "Qt" and version "4.1.1"
-
Affected
Qt
Search vendor "Qt"
Qt
Search vendor "Qt" for product "Qt"
4.1.2
Search vendor "Qt" for product "Qt" and version "4.1.2"
-
Affected
Qt
Search vendor "Qt"
Qt
Search vendor "Qt" for product "Qt"
4.1.3
Search vendor "Qt" for product "Qt" and version "4.1.3"
-
Affected
Qt
Search vendor "Qt"
Qt
Search vendor "Qt" for product "Qt"
4.1.4
Search vendor "Qt" for product "Qt" and version "4.1.4"
-
Affected
Qt
Search vendor "Qt"
Qt
Search vendor "Qt" for product "Qt"
4.1.5
Search vendor "Qt" for product "Qt" and version "4.1.5"
-
Affected
Qt
Search vendor "Qt"
Qt
Search vendor "Qt" for product "Qt"
4.2.0
Search vendor "Qt" for product "Qt" and version "4.2.0"
-
Affected
Qt
Search vendor "Qt"
Qt
Search vendor "Qt" for product "Qt"
4.2.1
Search vendor "Qt" for product "Qt" and version "4.2.1"
-
Affected
Qt
Search vendor "Qt"
Qt
Search vendor "Qt" for product "Qt"
4.2.3
Search vendor "Qt" for product "Qt" and version "4.2.3"
-
Affected
Qt
Search vendor "Qt"
Qt
Search vendor "Qt" for product "Qt"
4.3.0
Search vendor "Qt" for product "Qt" and version "4.3.0"
-
Affected
Qt
Search vendor "Qt"
Qt
Search vendor "Qt" for product "Qt"
4.3.1
Search vendor "Qt" for product "Qt" and version "4.3.1"
-
Affected
Qt
Search vendor "Qt"
Qt
Search vendor "Qt" for product "Qt"
4.3.2
Search vendor "Qt" for product "Qt" and version "4.3.2"
-
Affected
Qt
Search vendor "Qt"
Qt
Search vendor "Qt" for product "Qt"
4.3.3
Search vendor "Qt" for product "Qt" and version "4.3.3"
-
Affected
Qt
Search vendor "Qt"
Qt
Search vendor "Qt" for product "Qt"
4.3.4
Search vendor "Qt" for product "Qt" and version "4.3.4"
-
Affected
Qt
Search vendor "Qt"
Qt
Search vendor "Qt" for product "Qt"
4.3.5
Search vendor "Qt" for product "Qt" and version "4.3.5"
-
Affected
Qt
Search vendor "Qt"
Qt
Search vendor "Qt" for product "Qt"
4.4.0
Search vendor "Qt" for product "Qt" and version "4.4.0"
-
Affected
Qt
Search vendor "Qt"
Qt
Search vendor "Qt" for product "Qt"
4.4.1
Search vendor "Qt" for product "Qt" and version "4.4.1"
-
Affected
Qt
Search vendor "Qt"
Qt
Search vendor "Qt" for product "Qt"
4.4.2
Search vendor "Qt" for product "Qt" and version "4.4.2"
-
Affected
Qt
Search vendor "Qt"
Qt
Search vendor "Qt" for product "Qt"
4.4.3
Search vendor "Qt" for product "Qt" and version "4.4.3"
-
Affected
Qt
Search vendor "Qt"
Qt
Search vendor "Qt" for product "Qt"
4.5.0
Search vendor "Qt" for product "Qt" and version "4.5.0"
-
Affected
Qt
Search vendor "Qt"
Qt
Search vendor "Qt" for product "Qt"
4.5.1
Search vendor "Qt" for product "Qt" and version "4.5.1"
-
Affected
Qt
Search vendor "Qt"
Qt
Search vendor "Qt" for product "Qt"
4.5.2
Search vendor "Qt" for product "Qt" and version "4.5.2"
-
Affected
Qt
Search vendor "Qt"
Qt
Search vendor "Qt" for product "Qt"
4.5.3
Search vendor "Qt" for product "Qt" and version "4.5.3"
-
Affected
Qt
Search vendor "Qt"
Qt
Search vendor "Qt" for product "Qt"
4.6.0
Search vendor "Qt" for product "Qt" and version "4.6.0"
-
Affected
Qt
Search vendor "Qt"
Qt
Search vendor "Qt" for product "Qt"
4.6.1
Search vendor "Qt" for product "Qt" and version "4.6.1"
-
Affected
Qt
Search vendor "Qt"
Qt
Search vendor "Qt" for product "Qt"
4.6.2
Search vendor "Qt" for product "Qt" and version "4.6.2"
-
Affected
Qt
Search vendor "Qt"
Qt
Search vendor "Qt" for product "Qt"
4.6.3
Search vendor "Qt" for product "Qt" and version "4.6.3"
-
Affected
Qt
Search vendor "Qt"
Qt
Search vendor "Qt" for product "Qt"
4.6.4
Search vendor "Qt" for product "Qt" and version "4.6.4"
-
Affected
Qt
Search vendor "Qt"
Qt
Search vendor "Qt" for product "Qt"
4.6.5
Search vendor "Qt" for product "Qt" and version "4.6.5"
-
Affected
Qt
Search vendor "Qt"
Qt
Search vendor "Qt" for product "Qt"
4.7.0
Search vendor "Qt" for product "Qt" and version "4.7.0"
-
Affected
Qt
Search vendor "Qt"
Qt
Search vendor "Qt" for product "Qt"
4.7.1
Search vendor "Qt" for product "Qt" and version "4.7.1"
-
Affected
Qt
Search vendor "Qt"
Qt
Search vendor "Qt" for product "Qt"
4.7.2
Search vendor "Qt" for product "Qt" and version "4.7.2"
-
Affected
Qt
Search vendor "Qt"
Qt
Search vendor "Qt" for product "Qt"
4.7.3
Search vendor "Qt" for product "Qt" and version "4.7.3"
-
Affected
Qt
Search vendor "Qt"
Qt
Search vendor "Qt" for product "Qt"
4.7.4
Search vendor "Qt" for product "Qt" and version "4.7.4"
-
Affected
Qt
Search vendor "Qt"
Qt
Search vendor "Qt" for product "Qt"
4.7.5
Search vendor "Qt" for product "Qt" and version "4.7.5"
-
Affected
Qt
Search vendor "Qt"
Qt
Search vendor "Qt" for product "Qt"
4.7.6
Search vendor "Qt" for product "Qt" and version "4.7.6"
-
Affected
Qt
Search vendor "Qt"
Qt
Search vendor "Qt" for product "Qt"
4.8.0
Search vendor "Qt" for product "Qt" and version "4.8.0"
-
Affected
Qt
Search vendor "Qt"
Qt
Search vendor "Qt" for product "Qt"
4.8.1
Search vendor "Qt" for product "Qt" and version "4.8.1"
-
Affected
Qt
Search vendor "Qt"
Qt
Search vendor "Qt" for product "Qt"
4.8.2
Search vendor "Qt" for product "Qt" and version "4.8.2"
-
Affected
Qt
Search vendor "Qt"
Qt
Search vendor "Qt" for product "Qt"
4.8.3
Search vendor "Qt" for product "Qt" and version "4.8.3"
-
Affected
Qt
Search vendor "Qt"
Qt
Search vendor "Qt" for product "Qt"
4.8.4
Search vendor "Qt" for product "Qt" and version "4.8.4"
-
Affected
Qt
Search vendor "Qt"
Qt
Search vendor "Qt" for product "Qt"
4.8.5
Search vendor "Qt" for product "Qt" and version "4.8.5"
-
Affected
Qt
Search vendor "Qt"
Qt
Search vendor "Qt" for product "Qt"
5.0.0
Search vendor "Qt" for product "Qt" and version "5.0.0"
-
Affected
Qt
Search vendor "Qt"
Qt
Search vendor "Qt" for product "Qt"
5.0.1
Search vendor "Qt" for product "Qt" and version "5.0.1"
-
Affected