{"id":"CVE-2025-5992","title":"When passing values outside of the expected range to QColorTransferGenericFunction it can cause a denial of service, for example, this can happen when passing a specifically crafted ICC profile to QColorSpace::fromICCProfile.\n\nThis issue…","summary":"When passing values outside of the expected range to QColorTransferGenericFunction it can cause a denial of service, for example, this can happen when passing a specifically crafted ICC profile to QColorSpace::fromICCProfile.\n\nThis issue…","severity":"none","cwe":["CWE-20"],"published":"2025-07-11","updated":"2026-07-29","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2025-5992","references":[{"url":"https://codereview.qt-project.org/c/qt/qtbase/+/647919","label":"a59d8014-47c4-4630-ab43-e1b13cbe58e3"}],"tags":["nvd"],"epss":0.00266,"epssPercentile":0.18746,"ingestedAt":"2026-07-29T10:45:50.358Z","slug":"CVE-2025-5992","body":"## Overview\n\nWhen passing values outside of the expected range to QColorTransferGenericFunction it can cause a denial of service, for example, this can happen when passing a specifically crafted ICC profile to QColorSpace::fromICCProfile.\n\nThis issue affects Qt from 6.6.0 through 6.8.3, from 6.9.0 through 6.9.1. This is fixed in 6.8.4 and 6.9.2.\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"sunlit","depthScore":3,"depthScoreParts":{"impact":2.8,"likelihood":0.1,"exploitation":0,"ransomware":0},"changes":[]}