Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2025:22361 - Security Advisory
Issued:
2025-12-01
Updated:
2025-12-01

RHSA-2025:22361 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Moderate: qt6-qtquick3d security update

Type/Severity

Security Advisory: Moderate

Red Hat Lightspeed patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for qt6-qtquick3d is now available for Red Hat Enterprise Linux 10.

Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

The Qt 6 Quick3D library.

Security Fix(es):

  • assimp: Open Asset Import Library Assimp Q3DLoader.cpp InternReadFile heap-based overflow (CVE-2025-11277)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

Affected Products

  • Red Hat Enterprise Linux for x86_64 10 x86_64
  • Red Hat Enterprise Linux for IBM z Systems 10 s390x
  • Red Hat Enterprise Linux for Power, little endian 10 ppc64le
  • Red Hat Enterprise Linux for ARM 64 10 aarch64
  • Red Hat CodeReady Linux Builder for x86_64 10 x86_64
  • Red Hat CodeReady Linux Builder for Power, little endian 10 ppc64le
  • Red Hat CodeReady Linux Builder for ARM 64 10 aarch64
  • Red Hat CodeReady Linux Builder for IBM z Systems 10 s390x

Fixes

  • BZ - 2401622 - CVE-2025-11277 assimp: Open Asset Import Library Assimp Q3DLoader.cpp InternReadFile heap-based overflow

CVEs

  • CVE-2025-11277

References

  • https://access.redhat.com/security/updates/classification/#moderate
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux for x86_64 10

SRPM
qt6-qtquick3d-6.9.1-1.el10_1.1.src.rpm SHA-256: 1b2e46745ac3aac1e51fe407d0a088c41ccfe08da5b3168460ea65a10e2ce339
x86_64
qt6-qtquick3d-6.9.1-1.el10_1.1.x86_64.rpm SHA-256: 4fbb31dcaf00cfd8f2810b898cf7e8d64affb8f0a0e904d7e7b856d2c4bd1248
qt6-qtquick3d-debuginfo-6.9.1-1.el10_1.1.x86_64.rpm SHA-256: 20485aafd75dc1e73a5dcc48102afb8343530fbd7ea60a9f065dae6811a59ca9
qt6-qtquick3d-debugsource-6.9.1-1.el10_1.1.x86_64.rpm SHA-256: ab3247db90065724d719a3b4c490ca39609eaa15428b9e0f7def55231d39dd6e
qt6-qtquick3d-devel-6.9.1-1.el10_1.1.x86_64.rpm SHA-256: 16cd502496cc69e66601e17d6100f46f0366c4e6c7aed328e9f59ce5edea9e5c
qt6-qtquick3d-devel-debuginfo-6.9.1-1.el10_1.1.x86_64.rpm SHA-256: 030e2e1859c3e939db87eb2e894df217d7422da50d0a952ada0e7bf3a602e4be
qt6-qtquick3d-examples-debuginfo-6.9.1-1.el10_1.1.x86_64.rpm SHA-256: 747d3ff25648c5f8a32168394cb2f84caa8812c31ca7d2b6a9c6a3a64d29f4fb
qt6-qtquick3d-tests-debuginfo-6.9.1-1.el10_1.1.x86_64.rpm SHA-256: d3591f913eabf0c93182420fec018137a9a7bb71950b0d8f5e4f103189d3cc0c

Red Hat Enterprise Linux for IBM z Systems 10

SRPM
qt6-qtquick3d-6.9.1-1.el10_1.1.src.rpm SHA-256: 1b2e46745ac3aac1e51fe407d0a088c41ccfe08da5b3168460ea65a10e2ce339
s390x
qt6-qtquick3d-6.9.1-1.el10_1.1.s390x.rpm SHA-256: 1fc33ac6834c3224e869ffc63f82ecefacd17b5393c81b471b79a927ed98d4f7
qt6-qtquick3d-debuginfo-6.9.1-1.el10_1.1.s390x.rpm SHA-256: 22f00892a6ae37ba286d58f3f97a58e9ce2fe2d10215f2191029a9ce8bbda1cc
qt6-qtquick3d-debugsource-6.9.1-1.el10_1.1.s390x.rpm SHA-256: 0250bc7259e9ebf2b66b79f2f551f0c629dbaaaa11543ef9ea6005631aa0fa76
qt6-qtquick3d-devel-6.9.1-1.el10_1.1.s390x.rpm SHA-256: e7db22e106927a1b0bb7c8fbe9983b6c6591a23c810596a4f4d6dba5dbc9c6d0
qt6-qtquick3d-devel-debuginfo-6.9.1-1.el10_1.1.s390x.rpm SHA-256: 4f3f6787d5032408c8bf88a96a435d8cb17d6ce6d0b00794efc6eed70d5324c9
qt6-qtquick3d-examples-debuginfo-6.9.1-1.el10_1.1.s390x.rpm SHA-256: 8619b3503a96d0471e97419513d5b871a53741f4bf3ee179705a75a83cf103dc
qt6-qtquick3d-tests-debuginfo-6.9.1-1.el10_1.1.s390x.rpm SHA-256: 00f25ebe5bc68a694b11dacaacd1be96cd6a3e0cc72a3c9533f2e9b3f767d8ac

Red Hat Enterprise Linux for Power, little endian 10

SRPM
qt6-qtquick3d-6.9.1-1.el10_1.1.src.rpm SHA-256: 1b2e46745ac3aac1e51fe407d0a088c41ccfe08da5b3168460ea65a10e2ce339
ppc64le
qt6-qtquick3d-6.9.1-1.el10_1.1.ppc64le.rpm SHA-256: b9a8b78044c20aab8a4fd64b9f1c3791d23920ceab3959811ab6b172462b5b10
qt6-qtquick3d-debuginfo-6.9.1-1.el10_1.1.ppc64le.rpm SHA-256: 7087999afcd94e2adbb0020eb284c03b5b4c38bd0725d4e0b335459bbbd21747
qt6-qtquick3d-debugsource-6.9.1-1.el10_1.1.ppc64le.rpm SHA-256: 79194a9d78159d71b98caa02bbb981050627da10f731244a1e4b43b05e8b4609
qt6-qtquick3d-devel-6.9.1-1.el10_1.1.ppc64le.rpm SHA-256: 3316cb152ea7b1d2800d0a8d539691a439e00eb21d7daf6cd92ab795c36a5892
qt6-qtquick3d-devel-debuginfo-6.9.1-1.el10_1.1.ppc64le.rpm SHA-256: 9661e30e220b54f69a655d6550c7d9ddded9cdbee0a02b55d9750a58b2b89240
qt6-qtquick3d-examples-debuginfo-6.9.1-1.el10_1.1.ppc64le.rpm SHA-256: 88ca980a59e43baff4310bbbd05851da4f2c03f4aeb46df3c92ae3bf421a8d31
qt6-qtquick3d-tests-debuginfo-6.9.1-1.el10_1.1.ppc64le.rpm SHA-256: d7a4bc4a766112c5c2d4380b4066131a9abc1f09c35eab1ec32d7f3965f2b895

Red Hat Enterprise Linux for ARM 64 10

SRPM
qt6-qtquick3d-6.9.1-1.el10_1.1.src.rpm SHA-256: 1b2e46745ac3aac1e51fe407d0a088c41ccfe08da5b3168460ea65a10e2ce339
aarch64
qt6-qtquick3d-6.9.1-1.el10_1.1.aarch64.rpm SHA-256: 8888b68ce085d27482948320fc2313a519a6c52fe42be504d810a64a3b0dbd29
qt6-qtquick3d-debuginfo-6.9.1-1.el10_1.1.aarch64.rpm SHA-256: f62eb4dc5bc4a62fd33652d7b9643d83ebdc1e570d1ad8a4832a7f53f8122839
qt6-qtquick3d-debugsource-6.9.1-1.el10_1.1.aarch64.rpm SHA-256: 71abd082f5c571022650404f97f82ac7ddc8575efaeb45a2be59da3e2aff45a3
qt6-qtquick3d-devel-6.9.1-1.el10_1.1.aarch64.rpm SHA-256: 05b6e79ff1850b4d5f22902733bd80df100ad112d5c3196dc2e7a678364957ee
qt6-qtquick3d-devel-debuginfo-6.9.1-1.el10_1.1.aarch64.rpm SHA-256: cc0040b351c146daa5750aaee364068b2789778b5c77a9fa1e785de1808a1546
qt6-qtquick3d-examples-debuginfo-6.9.1-1.el10_1.1.aarch64.rpm SHA-256: 2e492932e298e225a9c834cf4b026047185c27d934d99b91b2b486086e1fb6ba
qt6-qtquick3d-tests-debuginfo-6.9.1-1.el10_1.1.aarch64.rpm SHA-256: 6d115bda570d181f0f2f0e24c2d6100d1e86a9aabbe0c2da9e6bee1c3bef514a

Red Hat CodeReady Linux Builder for x86_64 10

SRPM
x86_64
qt6-qtquick3d-debuginfo-6.9.1-1.el10_1.1.x86_64.rpm SHA-256: 20485aafd75dc1e73a5dcc48102afb8343530fbd7ea60a9f065dae6811a59ca9
qt6-qtquick3d-debugsource-6.9.1-1.el10_1.1.x86_64.rpm SHA-256: ab3247db90065724d719a3b4c490ca39609eaa15428b9e0f7def55231d39dd6e
qt6-qtquick3d-devel-debuginfo-6.9.1-1.el10_1.1.x86_64.rpm SHA-256: 030e2e1859c3e939db87eb2e894df217d7422da50d0a952ada0e7bf3a602e4be
qt6-qtquick3d-examples-6.9.1-1.el10_1.1.x86_64.rpm SHA-256: 305aaec6af2062b99ca15fc71dc0087d83a179d648fb06204c60c3c7def9a0e5
qt6-qtquick3d-examples-debuginfo-6.9.1-1.el10_1.1.x86_64.rpm SHA-256: 747d3ff25648c5f8a32168394cb2f84caa8812c31ca7d2b6a9c6a3a64d29f4fb
qt6-qtquick3d-tests-debuginfo-6.9.1-1.el10_1.1.x86_64.rpm SHA-256: d3591f913eabf0c93182420fec018137a9a7bb71950b0d8f5e4f103189d3cc0c

Red Hat CodeReady Linux Builder for Power, little endian 10

SRPM
ppc64le
qt6-qtquick3d-debuginfo-6.9.1-1.el10_1.1.ppc64le.rpm SHA-256: 7087999afcd94e2adbb0020eb284c03b5b4c38bd0725d4e0b335459bbbd21747
qt6-qtquick3d-debugsource-6.9.1-1.el10_1.1.ppc64le.rpm SHA-256: 79194a9d78159d71b98caa02bbb981050627da10f731244a1e4b43b05e8b4609
qt6-qtquick3d-devel-debuginfo-6.9.1-1.el10_1.1.ppc64le.rpm SHA-256: 9661e30e220b54f69a655d6550c7d9ddded9cdbee0a02b55d9750a58b2b89240
qt6-qtquick3d-examples-6.9.1-1.el10_1.1.ppc64le.rpm SHA-256: a5c51a176a6d83895467ea7cdf628d50326206ab2954bd1c31d24b7acac177ae
qt6-qtquick3d-examples-debuginfo-6.9.1-1.el10_1.1.ppc64le.rpm SHA-256: 88ca980a59e43baff4310bbbd05851da4f2c03f4aeb46df3c92ae3bf421a8d31
qt6-qtquick3d-tests-debuginfo-6.9.1-1.el10_1.1.ppc64le.rpm SHA-256: d7a4bc4a766112c5c2d4380b4066131a9abc1f09c35eab1ec32d7f3965f2b895

Red Hat CodeReady Linux Builder for ARM 64 10

SRPM
aarch64
qt6-qtquick3d-debuginfo-6.9.1-1.el10_1.1.aarch64.rpm SHA-256: f62eb4dc5bc4a62fd33652d7b9643d83ebdc1e570d1ad8a4832a7f53f8122839
qt6-qtquick3d-debugsource-6.9.1-1.el10_1.1.aarch64.rpm SHA-256: 71abd082f5c571022650404f97f82ac7ddc8575efaeb45a2be59da3e2aff45a3
qt6-qtquick3d-devel-debuginfo-6.9.1-1.el10_1.1.aarch64.rpm SHA-256: cc0040b351c146daa5750aaee364068b2789778b5c77a9fa1e785de1808a1546
qt6-qtquick3d-examples-6.9.1-1.el10_1.1.aarch64.rpm SHA-256: d185ff75711936e5b9fab81402981b2dff74c60ce149b593dfca6f06132ab4f4
qt6-qtquick3d-examples-debuginfo-6.9.1-1.el10_1.1.aarch64.rpm SHA-256: 2e492932e298e225a9c834cf4b026047185c27d934d99b91b2b486086e1fb6ba
qt6-qtquick3d-tests-debuginfo-6.9.1-1.el10_1.1.aarch64.rpm SHA-256: 6d115bda570d181f0f2f0e24c2d6100d1e86a9aabbe0c2da9e6bee1c3bef514a

Red Hat CodeReady Linux Builder for IBM z Systems 10

SRPM
s390x
qt6-qtquick3d-debuginfo-6.9.1-1.el10_1.1.s390x.rpm SHA-256: 22f00892a6ae37ba286d58f3f97a58e9ce2fe2d10215f2191029a9ce8bbda1cc
qt6-qtquick3d-debugsource-6.9.1-1.el10_1.1.s390x.rpm SHA-256: 0250bc7259e9ebf2b66b79f2f551f0c629dbaaaa11543ef9ea6005631aa0fa76
qt6-qtquick3d-devel-debuginfo-6.9.1-1.el10_1.1.s390x.rpm SHA-256: 4f3f6787d5032408c8bf88a96a435d8cb17d6ce6d0b00794efc6eed70d5324c9
qt6-qtquick3d-examples-6.9.1-1.el10_1.1.s390x.rpm SHA-256: dd5082a2acc90e14d44d9da68b20546da55ef60c749412921445300dbb46dac6
qt6-qtquick3d-examples-debuginfo-6.9.1-1.el10_1.1.s390x.rpm SHA-256: 8619b3503a96d0471e97419513d5b871a53741f4bf3ee179705a75a83cf103dc
qt6-qtquick3d-tests-debuginfo-6.9.1-1.el10_1.1.s390x.rpm SHA-256: 00f25ebe5bc68a694b11dacaacd1be96cd6a3e0cc72a3c9533f2e9b3f767d8ac

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility