Uploaded image for project: 'Qt'
  1. Qt
  2. QTBUG-131525

Integrate vulnerability topics into Qt documentation

    XMLWordPrintable

Details

    • Bug
    • Resolution: Unresolved
    • P3: Somewhat important
    • None
    • 6.9
    • Documentation

    Description

      Add information about cyber attack types into Qt Reference Documentation.

      References:

      https://cwe.mitre.org/index.html

      https://cve.mitre.org/

      This is a separate task from https://bugreports.qt.io/browse/QTBUG-110774 because it involves introducing industry terms and jargons (attack vectors, injection attacks, and similar) which don't belong in an overview.

       

      Specifics:

      -investigate whether adding CVEs and CWE materials are relevant for the Qt documentation. If yes, where and how it should look like. Should it be in Qt Reference or wiki?

      -investigate which Qt APIs we can mention as "vulnerable" or "susceptible", maybe add a comment in the module documentation

      -create a summary or list of relevant vulnerabilities. Maybe link to other internal or external content.

      -in the far future, check if some of the examples also needs to be updated with links to this topic

      Attachments

        No reviews matched the request. Check your Options in the drop-down menu of this sections header.

        Activity

          People

            jerome.pasion Jerome Pasion
            jerome.pasion Jerome Pasion
            Votes:
            0 Vote for this issue
            Watchers:
            3 Start watching this issue

            Dates

              Created:
              Updated:

              Gerrit Reviews

                There are no open Gerrit changes