Logo
vulnerabilityCVE-2024-39936
Name
CVE-2024-39936
Source
NVD ( link)Debian ( link)
Description
An issue was discovered in HTTP2 in Qt before 5.15.18, 6.x before 6.2.13, 6.3.x through 6.5.x before 6.5.7, and 6.6.x through 6.7.x before 6.7.3. Code to make security-relevant decisions about an established connection may execute too early, because the encrypted() signal has not yet been emitted and processed..
Published Date
Updated Date
Workaround
-

Analysis#


Affected Component
Analysis
qt5base
Exploitable

Vulnerability Ratings#


8.6
CVSSv31
5.9
CVSSv31
NaN
other

Others affected components#


Name
Project
Project Version
Version
Status
buildroot
master
bebdfd54917e25d1c100e6bd9f5dd53c2e645fd8
Not Affected
buildroot
master
6.9.1
Not Affected