VDB

DEBIAN-CVE-2023-24607

DEBIAN-CVE-2023-24607 PUBLISHED CVSS 7.5 HIGH

Qt before 6.4.3 allows a denial of service via a crafted string when the SQL ODBC driver plugin is used and the size of SQLTCHAR is 4. The affected versions are 5.x before 5.15.13, 6.x before 6.2.8, and 6.3.x before 6.4.3.

Risk Scores

CVSS v3.1
7.5
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Affected Products

VendorProductVersions
Debian:14qtbase-opensource-src0, 0, 0
Debian:13qt6-base0, 0, 0
Debian:14qt6-base0, 0, 0
Debian:13qtbase-opensource-src0, 0, 0
Debian:12qtbase-opensource-src0, 0, 0
Debian:11qtbase-opensource-src0, 5.15.2+dfsg, 0
Debian:12qt6-base0, 0, 0

Timeline

  • Apr 15, 2023 CVE Published
  • Apr 28, 2026 CVE Updated
Open in Interactive Console →
$ Console Community · 100/wk Open console ›