Details
-
Bug
-
Resolution: Unresolved
-
P3: Somewhat important
-
None
-
6.9
Description
Add information about cyber attack types into Qt Reference Documentation.
References:
https://cwe.mitre.org/index.html
This is a separate task from https://bugreports.qt.io/browse/QTBUG-110774 because it involves introducing industry terms and jargons (attack vectors, injection attacks, and similar) which don't belong in an overview.
Specifics:
-investigate whether adding CVEs and CWE materials are relevant for the Qt documentation. If yes, where and how it should look like. Should it be in Qt Reference or wiki?
-investigate which Qt APIs we can mention as "vulnerable" or "susceptible", maybe add a comment in the module documentation
-create a summary or list of relevant vulnerabilities. Maybe link to other internal or external content.
-in the far future, check if some of the examples also needs to be updated with links to this topic