Back to Database
Status published
Medium
CVE-2017-10905
A vulnerability in applications created using Qt for Android prior...
Vulnerability Description
A vulnerability in applications created using Qt for Android prior to 5.9.3 allows attackers to alter environment variables via unspecified vectors.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2017-10905
Credits & Attribution
No credits recorded in the NVD database.
References
More from The Qt Company
View All →CVE-2025-6338
Possible denial of service with multiple incoming connections to a Schannel based server with a TLS backend
Critical
9.2
CVE-2025-5992
Passing values outside of expected range to QColorTransferGenericFunction can cause a denial of service
Low
2.3
CVE-2025-5991
Use after free in QHttp2ProtocolHandler
Low
2.1
CVE-2025-5683
When loading a specifically crafted ICNS format image file in...
Medium
5.1
CVE-2025-5455
Possible denial of service when passing malformed data in a URL to qDecodeDataUrl
High
8.4
Affected Vendor
The Qt Company
View all reports →Affected Software
Qt for Android
Vulnerable Versions:
prior to 5.9.3
Timeline
Official Publish:
December 15th, 2017
Last Modified:
August 5th, 2024
Added to House:
July 20th, 2026
CVSS Vectors
V3:
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.