[Development] [Announce] Security advisory: Recently reported dr_wav issue impacts Qt
List for announcements regarding Qt releases and development via Announce
announce at qt-project.org
Thu Mar 12 11:00:00 CET 2026
Hi,
A recently reported issue regarding the loading of specifically crafted wave files in dr_wav has been confirmed as impacting the Qt Multimedia module.
Affected versions: From 6.10.0 through to 6.10.2
Impact: This is a reported issue for the 3rd party component – dr_wav – which is used in Qt Multimedia and will be fixed in version 0.14.6 of dr_wav. This impacts Qt Multimedia when using these files as it can cause a crash in Qt.
Mitigation: Ensure that all wave files are only from trusted sources.
Solution: Apply the following patches or update to Qt 6.10.3 or 6.11.0
Patches:
dev: https://codereview.qt-project.org/c/qt/qtmultimedia/+/718730 and https://codereview.qt-project.org/c/qt/qtmultimedia/+/719013
Qt 6.10: https://download.qt.io/official_releases/qt/6.10/dr_wav-qtmultimedia-6.10.patch or https://codereview.qt-project.org/c/qt/qtmultimedia/+/718944 and https://codereview.qt-project.org/c/qt/qtmultimedia/+/719206
Kind regards,
Andy
--
Andy Shaw,
The Qt Company
Confidential
Confidential
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.qt-project.org/pipermail/development/attachments/20260312/df9a93b5/attachment.htm>
-------------- next part --------------
_______________________________________________
Announce mailing list
Announce at qt-project.org
https://lists.qt-project.org/listinfo/announce
More information about the Development
mailing list