CVE-2024-30161
EUVD-2024-2809724.03.2024, 01:15
In Qt 6.5.4, 6.5.5, and 6.6.2, QNetworkReply header data might be accessed via a dangling pointer in Qt for WebAssembly (wasm). (Earlier and later versions are unaffected.)Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| qt | qt | 6.5.4 |
| qt | qt | 6.5.5 |
| qt | qt | 6.6.2 |
𝑥
= Vulnerable software versions
Debian Releases
Debian Product | |||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| qt6-base |
| ||||||||||||
| qtbase-opensource-src |
| ||||||||||||
| qtbase-opensource-src-gles |
|
Ubuntu Releases
Ubuntu Product | |||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| qt6-base |
| ||||||||||||||||||
| qtbase-opensource-src-gles |
| ||||||||||||||||||
| qtbase-opensource-src |
|
openSUSE / SLES Releases
openSUSE Product | |||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| libQt6Core6 |
| ||||||||||||||||||
| libQt6DBus6 |
| ||||||||||||||||||
| libQt6Gui6 |
| ||||||||||||||||||
| libQt6Network6 |
| ||||||||||||||||||
| libQt6OpenGL6 |
| ||||||||||||||||||
| libQt6Sql6 |
| ||||||||||||||||||
| libQt6Test6 |
| ||||||||||||||||||
| libQt6Widgets6 |
| ||||||||||||||||||
| qt6-network-tls |
| ||||||||||||||||||
| qt6-networkinformation-glib |
| ||||||||||||||||||
| qt6-networkinformation-nm |
|
Common Weakness Enumeration