---
title: "CVE-2006-4811\n    | Ubuntu"
description: Ubuntu is an open source software operating system that runs from the
  desktop, to the cloud, to all your internet connected things.
url: https://ubuntu.com/security/CVE-2006-4811?format=md
keywords: index, follow
---

# CVE-2006-4811

Publication date 18 October 2006

Last updated 17 July 2025

---

Ubuntu priority

**Medium**

[Why this priority?](https://ubuntu.com/security/cves/about#priority )

Toggle side navigation

## Description

Integer overflow in Qt 3.3 before 3.3.7, 4.1 before 4.1.5, and 4.2 before
4.2.1, as used in the KDE khtml library, kdelibs 3.1.3, and possibly other
packages, allows remote attackers to cause a denial of service (crash) and
possibly execute arbitrary code via a crafted pixmap image.

## Status

Show unmaintained releases

| Package | Ubuntu Release | Status |
| --- | --- | --- |
| qt-x11-free | 7.04 feisty | Fixed 3.3.8really3.3.7-0ubuntu5.2 |
| 6.10 edgy | Fixed 3.3.6-3ubuntu3.3 |
| 6.06 LTS dapper | Fixed 3.3.6-1ubuntu6.4 |
| qt4-x11 | 7.04 feisty | Fixed 4.2.0-1ubuntu6 |
| 6.10 edgy | Fixed 4.2.0-1ubuntu6 |
| 6.06 LTS dapper | Fixed 4.1.2-1ubuntu1.1 |

---

* [How can I get the fixes?](https://ubuntu.com/security/cves/about#security)
* [What do statuses mean?](https://ubuntu.com/security/cves/about#statuses)

## References

* [MITRE](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-4811)
* [NVD](https://nvd.nist.gov/vuln/detail/CVE-2006-4811)
* [Launchpad](https://launchpad.net/bugs/cve/CVE-2006-4811)
* [Debian](https://security-tracker.debian.org/tracker/CVE-2006-4811)

### Related Ubuntu Security Notices (USN)

+ [USN-368-1](https://usn.ubuntu.com/USN-368-1)
+ Qt vulnerability
+ 24 October 2006

### Other references

* <https://www.cve.org/CVERecord?id=CVE-2006-4811>
