NA

CVE-2024-36048

Published: 18/05/2024 Updated: 20/05/2024

Vulnerability Summary

QAbstractOAuth in Qt Network Authorization in Qt prior to 5.15.17, 6.x prior to 6.2.13, 6.3.x up to and including 6.5.x prior to 6.5.6, and 6.6.x up to and including 6.7.x prior to 6.7.1 uses only the time to seed the PRNG, which may result in guessable values.

Vendor Advisories

Debian Bug report logs - #1071973 qt6-networkauth: CVE-2024-36048 Package: src:qt6-networkauth; Maintainer for src:qt6-networkauth is Debian Qt/KDE Maintainers <debian-qt-kde@listsdebianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Sun, 26 May 2024 19:09:02 UTC Severity: important Tags: security ...