Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2025:20963 - Security Advisory
Issued:
2025-11-11
Updated:
2025-11-11

RHSA-2025:20963 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Moderate: qt5-qt3d security update

Type/Severity

Security Advisory: Moderate

Red Hat Lightspeed patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for qt5-qt3d is now available for Red Hat Enterprise Linux 9.

Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

Qt 3D provides functionality for near-realtime simulation systems with support for 2D and 3D rendering in both Qt C++ and Qt Quick applications).

Security Fix(es):

  • assimp: Open Asset Import Library Assimp Q3DLoader.cpp InternReadFile heap-based overflow (CVE-2025-11277)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

Affected Products

  • Red Hat Enterprise Linux for x86_64 9 x86_64
  • Red Hat Enterprise Linux for IBM z Systems 9 s390x
  • Red Hat Enterprise Linux for Power, little endian 9 ppc64le
  • Red Hat Enterprise Linux for ARM 64 9 aarch64

Fixes

  • BZ - 2401622 - CVE-2025-11277 assimp: Open Asset Import Library Assimp Q3DLoader.cpp InternReadFile heap-based overflow

CVEs

  • CVE-2025-11277

References

  • https://access.redhat.com/security/updates/classification/#moderate
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux for x86_64 9

SRPM
qt5-qt3d-5.15.9-2.el9_7.1.src.rpm SHA-256: 47e30378898ac11f25ad03fa0ba0377f14ecfeb85468bfe5e0832cb3470ef2db
x86_64
qt5-qt3d-5.15.9-2.el9_7.1.i686.rpm SHA-256: 6e3b578f4015b38603a33783e4c5b00e55641e9955843ab080404eac0a1b7a6b
qt5-qt3d-5.15.9-2.el9_7.1.x86_64.rpm SHA-256: ea848566ef06c4deedf9b10edd7b7c2e60cc7fee10d33f88cb11a8373ae82d16
qt5-qt3d-debuginfo-5.15.9-2.el9_7.1.i686.rpm SHA-256: 39f9ef7408128844267bd0c47864989c1df237cd6a063192d583c24152e08402
qt5-qt3d-debuginfo-5.15.9-2.el9_7.1.x86_64.rpm SHA-256: a336253b75a6e33aad8648d080468737cdf5063ff34de88b38902271bab3c8c4
qt5-qt3d-debugsource-5.15.9-2.el9_7.1.i686.rpm SHA-256: 1df5f8d1715855cadfeba9c678983fdc5c47d7163939dea349e70455fb68c6bc
qt5-qt3d-debugsource-5.15.9-2.el9_7.1.x86_64.rpm SHA-256: 1d6fa37575dd2e733730b7f4bab18e140b65bfef619798d68e460580a4d2cecf
qt5-qt3d-devel-5.15.9-2.el9_7.1.i686.rpm SHA-256: 5c112028a46b2b687d60cd9f6c1b7435fe0f18d9c1050fa98672bbeb7c194213
qt5-qt3d-devel-5.15.9-2.el9_7.1.x86_64.rpm SHA-256: 91c081add85b452f83007c239cb303227dffd6b2b02f473aa24884012a0d5b5a
qt5-qt3d-devel-debuginfo-5.15.9-2.el9_7.1.i686.rpm SHA-256: 8381f98eaf37b727dfd7528cc94a7a9352554b7fe48ef8a713b7f80188526891
qt5-qt3d-devel-debuginfo-5.15.9-2.el9_7.1.x86_64.rpm SHA-256: ab32fd3151ae07fd3722d51ef6c4b0598c0f29455d96c3665c4cf538b275e76a
qt5-qt3d-examples-5.15.9-2.el9_7.1.x86_64.rpm SHA-256: 765a5156006e4d06d1317bb15d7e67a5ca553c6c7e0bd6abf5e91c39362d9d8d
qt5-qt3d-examples-debuginfo-5.15.9-2.el9_7.1.i686.rpm SHA-256: 235d103670d8de89745472915664c47c805d61ab787a448f97e76334e10d0d5c
qt5-qt3d-examples-debuginfo-5.15.9-2.el9_7.1.x86_64.rpm SHA-256: 6a2459f26f45e7f715a39fb3e7b23dfbdcba5db420e616aa10a1f0113e287d2b
qt5-qt3d-tests-debuginfo-5.15.9-2.el9_7.1.i686.rpm SHA-256: b3909dbc91ab37f9fbdf72e4cc0be3a835fe59f9e31cf3a65f4897a423e05366
qt5-qt3d-tests-debuginfo-5.15.9-2.el9_7.1.x86_64.rpm SHA-256: bc7d96458ea0b67e98d8de8acfadaba0694a87de6c30ebfd233ae90c416fc693

Red Hat Enterprise Linux for IBM z Systems 9

SRPM
qt5-qt3d-5.15.9-2.el9_7.1.src.rpm SHA-256: 47e30378898ac11f25ad03fa0ba0377f14ecfeb85468bfe5e0832cb3470ef2db
s390x
qt5-qt3d-5.15.9-2.el9_7.1.s390x.rpm SHA-256: df5dad972426c088d0d22b808748aad1f0b756cfb4858c51b1b153e256d1bb4b
qt5-qt3d-debuginfo-5.15.9-2.el9_7.1.s390x.rpm SHA-256: 5f102ff06342d43f50366ba1f1ed6104d672e79ea43b8842d0ac1e3c99cda3e2
qt5-qt3d-debugsource-5.15.9-2.el9_7.1.s390x.rpm SHA-256: 130e2c9a118af596d9db941b14cd5e31d3664b3092c9b6d14008a4506b0705e9
qt5-qt3d-devel-5.15.9-2.el9_7.1.s390x.rpm SHA-256: f8a8a6652a09de369a204a47d2694610275d49ff3593043d33cb25d04be8afc9
qt5-qt3d-devel-debuginfo-5.15.9-2.el9_7.1.s390x.rpm SHA-256: 617ac21d31b12512d8c678f1c7120fe5af658b3a763a2b902020eb5b0eb5b796
qt5-qt3d-examples-5.15.9-2.el9_7.1.s390x.rpm SHA-256: 82bcc7a3a953bcd9e8d41aab0ebbb4f966ffe462e58b90a12847542284af25bd
qt5-qt3d-examples-debuginfo-5.15.9-2.el9_7.1.s390x.rpm SHA-256: d3519f0619a9c38a2827ebc2b73623c4589128c3ca3a892ad87fca8189ae8c0f
qt5-qt3d-tests-debuginfo-5.15.9-2.el9_7.1.s390x.rpm SHA-256: d25f57b17cd9df3fa08f3c70b2f69f7f4f84956432f164d61cd9c3e2ef457660

Red Hat Enterprise Linux for Power, little endian 9

SRPM
qt5-qt3d-5.15.9-2.el9_7.1.src.rpm SHA-256: 47e30378898ac11f25ad03fa0ba0377f14ecfeb85468bfe5e0832cb3470ef2db
ppc64le
qt5-qt3d-5.15.9-2.el9_7.1.ppc64le.rpm SHA-256: f7f0e036f5c377b6b9935235bae66a11c188cae8118de5ca9423f22f23f4dde0
qt5-qt3d-debuginfo-5.15.9-2.el9_7.1.ppc64le.rpm SHA-256: 42a1cb12269230afc5478a075c5b8fe5c5ee7011b29200b4dddfbe9f06251a64
qt5-qt3d-debugsource-5.15.9-2.el9_7.1.ppc64le.rpm SHA-256: f0e250f58a9a1c0fcb66cc995216d7431b94e6177c7baa77eeb95e8093a49414
qt5-qt3d-devel-5.15.9-2.el9_7.1.ppc64le.rpm SHA-256: 9e46258d1033412b26c63ea49797b1f0705a4436e28faf04013928ce789944f4
qt5-qt3d-devel-debuginfo-5.15.9-2.el9_7.1.ppc64le.rpm SHA-256: b91b91c50375f4faae1d04f6c03e18c4668b66213e6b33dfbd1be43fd315ba3b
qt5-qt3d-examples-5.15.9-2.el9_7.1.ppc64le.rpm SHA-256: cc267f53a709540ac5d51e07bb8ab92a7862d9c7231577da0c7fabb2798fb5c7
qt5-qt3d-examples-debuginfo-5.15.9-2.el9_7.1.ppc64le.rpm SHA-256: 2e2772c9bce5f822cec5432889a6451a364e427ecdc0c59b7c40178d96f1ed1a
qt5-qt3d-tests-debuginfo-5.15.9-2.el9_7.1.ppc64le.rpm SHA-256: ad8865acba1970068b066916de14527685e230f377f951f87e6f19fc2d1f8b6c

Red Hat Enterprise Linux for ARM 64 9

SRPM
qt5-qt3d-5.15.9-2.el9_7.1.src.rpm SHA-256: 47e30378898ac11f25ad03fa0ba0377f14ecfeb85468bfe5e0832cb3470ef2db
aarch64
qt5-qt3d-5.15.9-2.el9_7.1.aarch64.rpm SHA-256: f52420778bfe23a06b9130badb2909e3a388cfc5c190d565c8fd1633169ef92d
qt5-qt3d-debuginfo-5.15.9-2.el9_7.1.aarch64.rpm SHA-256: 78849e05acb9ca1fdec969f5113a0a85adcd0b335c26274655bf8c307c4b3b48
qt5-qt3d-debugsource-5.15.9-2.el9_7.1.aarch64.rpm SHA-256: c5ba1184ec7b87ea8001a6b6eef265365eca022ca8004a79e848b4585d646961
qt5-qt3d-devel-5.15.9-2.el9_7.1.aarch64.rpm SHA-256: eaee8e3083d2d0131ee37d8dac1225ff42ac0d73c0fe82b86d2d255e7c7728e5
qt5-qt3d-devel-debuginfo-5.15.9-2.el9_7.1.aarch64.rpm SHA-256: 357163bd4fca366bce5a2290ad9a9e25ae39f36df8b78440223642f607c018f9
qt5-qt3d-examples-5.15.9-2.el9_7.1.aarch64.rpm SHA-256: 3c2cd4bfe0f363f247ea1db9b3ff1d5d0254adb1431204db85556a1bcb7936c3
qt5-qt3d-examples-debuginfo-5.15.9-2.el9_7.1.aarch64.rpm SHA-256: 8274cb30b3c4d1b53d948dd2df05fc27cb2962b3737af4a4d3cbb4a43ccedd03
qt5-qt3d-tests-debuginfo-5.15.9-2.el9_7.1.aarch64.rpm SHA-256: 7978286a6a42894fc494fd24bf98ed76247dcd9d43b614a8c7ffa7411264c655

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility