ZeroHour

CVE-2024-36048

CVSS 3.1
9.8 critical
EPSS
<1%p60
Published
()
Modified
Description

QAbstractOAuth in Qt Network Authorization in Qt before 5.15.17, 6.x before 6.2.13, 6.3.x through 6.5.x before 6.5.6, and 6.6.x through 6.7.x before 6.7.1 uses only the time to seed the PRNG, which may result in guessable values.

Vendors
qtfedoraproject
Products
qt, fedora
Weakness
CWE-335
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.