NA

CVE-2023-34410

Published: 05/06/2023 Updated: 07/11/2023
CVSS v3 Base Score: 5.3 | Impact Score: 1.4 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

An issue exists in Qt prior to 5.15.15, 6.x prior to 6.2.9, and 6.3.x up to and including 6.5.x prior to 6.5.2. Certificate validation for TLS does not always consider whether the root of a chain is a configured CA certificate.

Vulnerable Product Search on Vulmon Subscribe to Product

qt qt

Vendor Advisories

Debian Bug report logs - #1037209 qt6-base: CVE-2023-34410 Package: src:qt6-base; Maintainer for src:qt6-base is Debian Qt/KDE Maintainers <debian-qt-kde@listsdebianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Wed, 7 Jun 2023 19:03:02 UTC Severity: important Tags: security, upstream Found in ...
Synopsis Moderate: qt5 security and bug fix update Type/Severity Security Advisory: Moderate Red Hat Insights patch analysis Identify and remediate systems affected by this advisory View affected systems Topic An update for the qt5 stack is now available for Red Hat Enterprise Linux 9Red Hat Product Security has rated this update ...
Synopsis Low: Logging Subsystem 581- Red Hat OpenShift security update Type/Severity Security Advisory: Low Topic An update is now available for RHOL-58-RHEL-9Red Hat Product Security has rated this update as having a security impact of Low A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, i ...
Synopsis Moderate: qt5-qtbase security update Type/Severity Security Advisory: Moderate Red Hat Insights patch analysis Identify and remediate systems affected by this advisory View affected systems Topic An update for qt5-qtbase is now available for Red Hat Enterprise Linux 8Red Hat Product Security has rated this update as havin ...
An issue was discovered in Qt before 51515, 6x before 629, and 63x through 65x before 652 Certificate validation for TLS does not always consider whether the root of a chain is a configured CA certificate (CVE-2023-34410) ...
An issue was discovered in Qt before 51515, 6x before 629, and 63x through 65x before 652 Certificate validation for TLS does not always consider whether the root of a chain is a configured CA certificate (CVE-2023-34410) ...
DescriptionThe MITRE CVE dictionary describes this issue as: An issue was discovered in Qt before 51515, 6x before 629, and 63x through 65x before 652 Certificate validation for TLS does not always consider whether the root of a chain is a configured CA certificate ...