Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2023-24607

Опубликовано: 15 апр. 2023
Источник: redhat
CVSS3: 7.5
EPSS Низкий

Описание

Qt before 6.4.3 allows a denial of service via a crafted string when the SQL ODBC driver plugin is used and the size of SQLTCHAR is 4. The affected versions are 5.x before 5.15.13, 6.x before 6.2.8, and 6.3.x before 6.4.3.

A vulnerability was found in Qt, where a flaw occurs when the SQL ODBC driver plugin is used and the size of SQLTCHAR is 4, a remote attacker could exploit this vulnerability by sending a specially crafted string, causing a denial of service.

Отчет

This vulnerability is rated as moderate because it allows a remote attacker to cause a denial of service by exploiting the SQL ODBC driver pluginend, by sending a specially crafted string could crash the application, affecting availability but not compromising system security or integrity.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 8qt5Affected
Red Hat Enterprise Linux 9qt5Affected

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-404
https://bugzilla.redhat.com/show_bug.cgi?id=2187154qt5: A possible DOS involving the Qt SQL ODBC driver plugin

EPSS

Процентиль: 68%
0.0132
Низкий

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 3 лет назад

Qt before 6.4.3 allows a denial of service via a crafted string when the SQL ODBC driver plugin is used and the size of SQLTCHAR is 4. The affected versions are 5.x before 5.15.13, 6.x before 6.2.8, and 6.3.x before 6.4.3.

CVSS3: 7.5
nvd
больше 3 лет назад

Qt before 6.4.3 allows a denial of service via a crafted string when the SQL ODBC driver plugin is used and the size of SQLTCHAR is 4. The affected versions are 5.x before 5.15.13, 6.x before 6.2.8, and 6.3.x before 6.4.3.

CVSS3: 7.5
msrc
больше 3 лет назад

Описание отсутствует

CVSS3: 7.5
debian
больше 3 лет назад

Qt before 6.4.3 allows a denial of service via a crafted string when t ...

suse-cvrf
больше 3 лет назад

Security update for qt6-base

EPSS

Процентиль: 68%
0.0132
Низкий

7.5 High

CVSS3