CVE-2018-21035
28.02.2020, 21:15
In Qt through 5.14.1, the WebSocket implementation accepts up to 2GB for frames and 2GB for messages. Smaller limits cannot be configured. This makes it easier for attackers to cause a denial of service (memory consumption).Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| qt | qt | 𝑥 ≤ 5.14.1 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Red Hat Enterprise Linux Releases
Red Hat Product | |||
|---|---|---|---|
| qt5-assistant |
| ||
| qt5-designer |
| ||
| qt5-doctools |
| ||
| qt5-linguist |
| ||
| qt5-qdbusviewer |
| ||
| qt5-qtbase |
| ||
| qt5-qtbase-common |
| ||
| qt5-qtbase-devel |
| ||
| qt5-qtbase-examples |
| ||
| qt5-qtbase-gui |
| ||
| qt5-qtbase-mysql |
| ||
| qt5-qtbase-odbc |
| ||
| qt5-qtbase-postgresql |
| ||
| qt5-qtbase-private-devel |
| ||
| qt5-qtbase-static |
| ||
| qt5-qttools |
| ||
| qt5-qttools-common |
| ||
| qt5-qttools-devel |
| ||
| qt5-qttools-examples |
| ||
| qt5-qttools-libs-designer |
| ||
| qt5-qttools-libs-designercomponents |
| ||
| qt5-qttools-libs-help |
| ||
| qt5-qttools-static |
| ||
| qt5-qtwebsockets |
| ||
| qt5-qtwebsockets-devel |
| ||
| qt5-qtwebsockets-examples |
|