CVE-2024-36048
EUVD-2024-3585218.05.2024, 21:15
QAbstractOAuth in Qt Network Authorization in Qt before 5.15.17, 6.x before 6.2.13, 6.3.x through 6.5.x before 6.5.6, and 6.6.x through 6.7.x before 6.7.1 uses only the time to seed the PRNG, which may result in guessable values.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| qt | qt | 𝑥 < 5.15.17 |
| qt | qt | 6.0.0 ≤ 𝑥 < 6.2.13 |
| qt | qt | 6.3.0 ≤ 𝑥 < 6.5.6 |
| qt | qt | 6.6.0 ≤ 𝑥 < 6.7.1 |
𝑥
= Vulnerable software versions
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| qt | qt_network_authorization | 𝑥 < 5.15.17 | ADP |
| qt | qt_network_authorization | 6x ≤ 𝑥 < 6.2.13 | ADP |
| qt | qt_network_authorization | 6.3x ≤ 𝑥 ≤ 6.5x | ADP |
| qt | qt_network_authorization | 6.3x ≤ 𝑥 < 6.5.6 | ADP |
| qt | qt_network_authorization | 6.6x ≤ 𝑥 ≤ 6.7x | ADP |
| qt | qt_network_authorization | 6.6x ≤ 𝑥 < 6.71 | ADP |
Debian Releases
Ubuntu Releases
Common Weakness Enumeration
References