An issue was discovered in the HTTP2 implementation in Qt before 5.15.17, 6.x before 6.2.11, 6.3.x through 6.5.x before 6.5.4, and 6.6.x before 6.6.2. network/access/http2/hpacktable.cpp has an incorrect HPack integer overflow check.
2023-12-24T21:15:25.470
2025-03-20T21:31:13.473
Analyzed
CVSSv3.1: 9.8 (CRITICAL)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | debian | debian_linux | 10.0 | Yes |
Application | qt | qt | < 5.15.17 | Yes |
Application | qt | qt | < 6.2.11 | Yes |
Application | qt | qt | < 6.5.4 | Yes |
Application | qt | qt | < 6.6.2 | Yes |