Qt 6.4.0 Beta 3

CPE Details

Qt 6.4.0 Beta 3
6.4.0
2022-09-28
11h50 +00:00
2022-09-30
12h46 +00:00
Alerte pour un CPE
Restez informé de toutes modifications pour un CPE spécifique.
Gestion des notifications

CPE Name: cpe:2.3:a:qt:qt:6.4.0:beta3:*:*:*:*:*:*

Informations

Vendor

qt

Product

qt

Version

6.4.0

Update

beta3

Related CVE

Open and find in CVE List

CVE ID Publié Description Score Gravité
CVE-2024-39936 2024-07-04 00h00 +00:00 An issue was discovered in HTTP2 in Qt before 5.15.18, 6.x before 6.2.13, 6.3.x through 6.5.x before 6.5.7, and 6.6.x through 6.7.x before 6.7.3. Code to make security-relevant decisions about an established connection may execute too early, because the encrypted() signal has not yet been emitted and processed..
8.6
Haute
CVE-2023-51714 2023-12-23 23h00 +00:00 An issue was discovered in the HTTP2 implementation in Qt before 5.15.17, 6.x before 6.2.11, 6.3.x through 6.5.x before 6.5.4, and 6.6.x before 6.6.2. network/access/http2/hpacktable.cpp has an incorrect HPack integer overflow check.
9.8
Critique
CVE-2023-37369 2023-08-19 22h00 +00:00 In Qt before 5.15.15, 6.x before 6.2.9, and 6.3.x through 6.5.x before 6.5.2, there can be an application crash in QXmlStreamReader via a crafted XML string that triggers a situation in which a prefix is greater than a length.
7.5
Haute
CVE-2023-38197 2023-07-12 22h00 +00:00 An issue was discovered in Qt before 5.15.15, 6.x before 6.2.10, and 6.3.x through 6.5.x before 6.5.3. There are infinite loops in recursive entity expansion.
7.5
Haute
CVE-2023-34410 2023-06-04 22h00 +00:00 An issue was discovered in Qt before 5.15.15, 6.x before 6.2.9, and 6.3.x through 6.5.x before 6.5.2. Certificate validation for TLS does not always consider whether the root of a chain is a configured CA certificate.
5.3
Moyen
CVE-2023-32762 2023-05-27 22h00 +00:00 An issue was discovered in Qt before 5.15.14, 6.x before 6.2.9, and 6.3.x through 6.5.x before 6.5.1. Qt Network incorrectly parses the strict-transport-security (HSTS) header, allowing unencrypted connections to be established, even when explicitly prohibited by the server. This happens if the case used for this header does not exactly match.
5.3
Moyen
CVE-2023-32763 2023-05-27 22h00 +00:00 An issue was discovered in Qt before 5.15.15, 6.x before 6.2.9, and 6.3.x through 6.5.x before 6.5.1. When a SVG file with an image inside it is rendered, a QTextLayout buffer overflow can be triggered.
7.5
Haute
CVE-2023-33285 2023-05-21 22h00 +00:00 An issue was discovered in Qt 5.x before 5.15.14, 6.x before 6.2.9, and 6.3.x through 6.5.x before 6.5.1. QDnsLookup has a buffer over-read via a crafted reply from a DNS server.
5.3
Moyen
CVE-2023-32573 2023-05-10 00h00 +00:00 In Qt before 5.15.14, 6.0.x through 6.2.x before 6.2.9, and 6.3.x through 6.5.x before 6.5.1, QtSvg QSvgFont m_unitsPerEm initialization is mishandled.
6.5
Moyen
CVE-2023-24607 2023-04-14 22h00 +00:00 Qt before 6.4.3 allows a denial of service via a crafted string when the SQL ODBC driver plugin is used and the size of SQLTCHAR is 4. The affected versions are 5.x before 5.15.13, 6.x before 6.2.8, and 6.3.x before 6.4.3.
7.5
Haute