---
id: CVE-2020-0570
title: >-
  Uncontrolled search path in the QT Library before 5.14.0, 5.12.7 and 5.9.10
  may allow an authenticated user to potentially enable elevation of privilege
  via local access.
summary: >-
  Uncontrolled search path in the QT Library before 5.14.0, 5.12.7 and 5.9.10
  may allow an authenticated user to potentially enable elevation of privilege
  via local access.
severity: high
cvss: 7.3
cvssVector: 'CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H'
cwe:
  - CWE-426
vendor: qt
product: qt
affected:
  - qt < 5.9.10
  - 'qt >= 5.10.0, < 5.12.7'
  - 'qt >= 5.13.0, < 5.14.0'
  - enterprise_linux = 7.0
  - enterprise_linux = 8.0
patched:
  - qt 5.14.0
published: '2020-09-14'
updated: '2026-10-08'
sourceUpdated: '2026-10-08T21:17:20.563'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2020-0570'
references:
  - url: 'https://bugreports.qt.io/browse/QTBUG-81272'
    label: secure@intel.com
  - url: 'https://bugzilla.redhat.com/show_bug.cgi?id=1800604'
    label: secure@intel.com
  - url: >-
      https://lists.qt-project.org/pipermail/development/2020-January/038534.html
    label: secure@intel.com
  - url: 'https://bugreports.qt.io/browse/QTBUG-81272'
    label: af854a3a-2127-422b-91ae-364da2661108
  - url: 'https://bugzilla.redhat.com/show_bug.cgi?id=1800604'
    label: af854a3a-2127-422b-91ae-364da2661108
  - url: >-
      https://lists.qt-project.org/pipermail/development/2020-January/038534.html
    label: af854a3a-2127-422b-91ae-364da2661108
tags:
  - nvd
epss: 0.00568
epssPercentile: 0.45311
ingestedAt: '2026-10-08T22:11:53.720Z'
---

## Overview

Uncontrolled search path in the QT Library before 5.14.0, 5.12.7 and 5.9.10 may allow an authenticated user to potentially enable elevation of privilege via local access.

## Affected

- `qt < 5.9.10`
- `qt >= 5.10.0, < 5.12.7`
- `qt >= 5.13.0, < 5.14.0`
- `enterprise_linux = 7.0`
- `enterprise_linux = 8.0`

## Remediation

Upgrade past the affected range:

- `qt 5.14.0`
