← Back

CVE-2024-36048

nvd nist
Published: May 18, 2024Modified: Jun 17, 2026

JSON object

Loading...
9.8
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 3.9 / Impact: 5.9
Source: 134c704f-9b21-4f2e-91b3-4a467353bcc0 (Secondary)

Description

QAbstractOAuth in Qt Network Authorization in Qt before 5.15.17, 6.x before 6.2.13, 6.3.x through 6.5.x before 6.5.6, and 6.6.x through 6.7.x before 6.7.1 uses only the time to seed the PRNG, which may result in guessable values.

Affected (6)

Products: Qt: Qt · Fedoraproject: Fedora
1 product
Qt
1 product
Fedora
Configuration A
4 vulnerable
Vulnerable SoftwareAffected Versions
Qt
Before 5.15.17
From 6.0.0 to 6.2.13
From 6.3.0 to 6.5.6
From 6.6.0 to 6.7.1
Configuration B
2 vulnerable
Vulnerable SoftwareAffected Versions
Fedoraproject
Version 39
Version 40

References (13)

Source: af854a3a-2127-422b-91ae-364da2661108
Patch
Source: af854a3a-2127-422b-91ae-364da2661108
Patch

Timeline

No history available yet.