VDB

DEBIAN-CVE-2023-34410

DEBIAN-CVE-2023-34410 PUBLISHED CVSS 5.300000190734863 MEDIUM

An issue was discovered in Qt before 5.15.15, 6.x before 6.2.9, and 6.3.x through 6.5.x before 6.5.2. Certificate validation for TLS does not always consider whether the root of a chain is a configured CA certificate.

Risk Scores

CVSS v3.1
5.300000190734863
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N

Affected Products

VendorProductVersions
Debian:14qtbase-opensource-src-gles0, 0, 0
Debian:12qt6-base6.6.1+dfsg-4, 6.10.2+dfsg, 6.10.2+dfsg
Debian:13qtbase-opensource-src-gles0, 0, 0
Debian:14qt6-base0, 0, 0
Debian:11qtbase-opensource-src-gles5.15.8+dfsg-3, 5.15.18+dfsg-1, 5.15.2+dfsg-4
Debian:11qtbase-opensource-src0, 0, 0
Debian:14qtbase-opensource-src0, 0, 0
Debian:13qt6-base0, 0, 0
Debian:12qtbase-opensource-src-gles5.15.10+dfsg-3, 5.15.10+dfsg-6, 5.15.12+dfsg-1
Debian:13qtbase-opensource-src0, 0, 0
Debian:12qtbase-opensource-src*, 0, 0

Timeline

  • Jun 5, 2023 CVE Published
  • Apr 28, 2026 CVE Updated
Open in Interactive Console →
$ Console Community · 100/wk Open console ›