[Development] [Announce] Qt 5.15.14 Opensource released

2024-05-24 Thread List for announcements regarding Qt releases and development via Announce via Development
Hi all, we have released Qt 5.15.14 opensource today: * release note: https://code.qt.io/cgit/qt/qtreleasenotes.git/tree/qt/5.15.14/release-note.md * source packages in download.qt.io: * https://download.qt.io/official_releases/qt/5.15/5.15.14/ * https://download.qt.io

Re: [Development] Changing Qt's Binary Compatibility policy

2024-05-24 Thread Thiago Macieira
On Friday 24 May 2024 13:29:41 GMT-3 Giuseppe D'Angelo via Development wrote: > Details: no user downgrades Qt and therefore has ever needed this. This > is something that only Qt developers themselves have possibly needed -- > seems to be a historical remnant at this point. > > Concretely, this m

[Development] Changing Qt's Binary Compatibility policy

2024-05-24 Thread Giuseppe D'Angelo via Development
Hi, One of the discussions at the past Qt Contributors' Summit was about our BC policy: https://wiki.qt.io/Two-way_BC_in_Patch_Releases We had a consensus for implementing some changes, but I don't remember the action points have been taken, so here we are. We propose to change Qt's BC po

[Development] [Announce] Security advisory: OAuth1 implementation in QtNetworkAuth

2024-05-24 Thread List for announcements regarding Qt releases and development via Announce via Development
Hi, The OAuth1 implementation in QtNetworkAuth created nonces using a PRNG that was seeded with a predictable seed. This issue has been assigned the CVE id CVE-2024-36048. This means that an attacker that can somehow control the time of the first OAuth1 flow of the process has a high chance of