summaryrefslogtreecommitdiffstats
path: root/dist/changes-5.12.8
blob: 5a474e9c08c4560de8e1bc07989ca915c291b12e (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
Qt 5.12.8 is a bug-fix release. It maintains both forward and backward
compatibility (source and binary) with Qt 5.12.0 through 5.12.7.

For more details, refer to the online documentation included in this
distribution. The documentation is also available online:

https://doc.qt.io/qt-5/index.html

The Qt version 5.12 series is binary compatible with the 5.11.x series.
Applications compiled for 5.11 will continue to run with 5.12.

Some of the changes listed in this file include issue tracking numbers
corresponding to tasks in the Qt Bug Tracker:

https://bugreports.qt.io/

Each of these identifiers can be entered in the bug tracker to obtain more
information about a particular change.

****************************************************************************
*                              Qt 5.12.8 Changes                           *
****************************************************************************

General
-------

  - [QTBUG-81313] Enabled running with glibc 2.30 in Linux sandbox
  - [QTBUG-81521] Update navigation actions when load finishes in a subframe
  - [QTBUG-78490] Fixed crash when initiaing loads from urlChanged handlers

Chromium
--------

  - Security fixes from Chromium up to version 80.0.3987.149, including:

    - CVE-2019-18197 - Multiple vulnerabilities in XML
    - CVE-2019-19923 - Out of bounds memory access in SQLite
    - CVE-2019-19925 - Multiple vulnerabilities in SQLite
    - CVE-2019-19926 - Inappropriate implementation in SQLite
    - CVE-2019-20503 - Out of bounds read in usersctplib
    - CVE-2020-6381 - Integer overflow in Javascript
    - CVE-2020-6383 - Type confusion in V8
    - CVE-2020-6384 - Use after free in WebAudio
    - CVE-2020-6388 - Out of bounds memory access in WebAudio
    - CVE-2020-6389 - Out of bounds write in WebRTC
    - CVE-2020-6391 - Insufficient validation of untrusted input in Blink
    - CVE-2020-6393 - Insufficient policy enforcement in Blink
    - CVE-2020-6394 - Insufficient policy enforcement in Blink
    - CVE-2020-6398 - Uninitialized use in PDFium
    - CVE-2020-6399 - Insufficient policy enforcement in AppCache
    - CVE-2020-6401
    - CVE-2020-6405 - Out of bounds read in SQLite
    - CVE-2020-6406 - Use after free in audio
    - CVE-2020-6410 - Insufficient policy enforcement in navigation
    - CVE-2020-6411
    - CVE-2020-6412 - Insufficient validation of untrusted input in Omnibox
    - CVE-2020-6413 - Inappropriate implementation in Blink
    - CVE-2020-6418 - Type confusion in V8
    - CVE-2020-6420 - Insufficient policy enforcement in media
    - Security bug 1016038
    - Security bug 1016506
    - Security bug 1018629
    - Security bug 1020031
    - Security bug 1025442
    - Security bug 1026293
    - Security bug 1029865
    - Security bug 1031909
    - Security bug 1033461
    - Security bug 1035723
    - Security bug 1040700
    - Security bug 1044570
    - Security bug 1047097