CVE-2023-34410
Summary
| CVE | CVE-2023-34410 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2023-06-05 03:15:00 UTC |
| Updated | 2023-11-07 04:15:00 UTC |
| Description | An issue was discovered in Qt before 5.15.15, 6.x before 6.2.9, and 6.3.x through 6.5.x before 6.5.2. Certificate validation for TLS does not always consider whether the root of a chain is a configured CA certificate. |
Risk And Classification
Problem Types: CWE-295
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| [SECURITY] Fedora 38 Update: qt-4.8.7-73.fc38 - package-announce - Fedora Mailing-Lists | FEDORA | lists.fedoraproject.org | |
| [SECURITY] Fedora 38 Update: qt-4.8.7-73.fc38 - package-announce - Fedora Mailing-Lists | lists.fedoraproject.org | ||
| [SECURITY] [DLA 3539-1] qt4-x11 security update | MLIST | lists.debian.org | |
| codereview.qt-project.org/c/qt/qtbase/+/480002 | MISC | codereview.qt-project.org | |
| codereview.qt-project.org/c/qt/qtbase/+/477560 | MISC | codereview.qt-project.org | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 161064 Oracle Enterprise Linux Security Update for qt5 (ELSA-2023-6369)
- 161142 Oracle Enterprise Linux Security Update for qt5-qtbase (ELSA-2023-6967)
- 242300 Red Hat Update for qt5 (RHSA-2023:6369)
- 242424 Red Hat Update for qt5-qtbase (RHSA-2023:6967)
- 284060 Fedora Security Update for qt (FEDORA-2023-0d4b3316f6)
- 296105 Oracle Solaris 11.4 Support Repository Update (SRU) 63.157.1 Missing (CPUOCT2023)
- 355540 Amazon Linux Security Advisory for qt5-qtbase : ALAS2-2023-2091
- 355542 Amazon Linux Security Advisory for qt : ALAS2-2023-2090
- 6000048 Debian Security Update for qt4-x11 (DLA 3539-1)
- 673618 EulerOS Security Update for qt (EulerOS-SA-2023-3154)
- 673688 EulerOS Security Update for qt5-qtbase (EulerOS-SA-2023-3155)
- 754216 SUSE Enterprise Linux Security Update for libqt5-qtbase (SUSE-SU-2023:2971-1)
- 754253 SUSE Enterprise Linux Security Update for libqt5-qtbase (SUSE-SU-2023:3207-1)
- 941352 AlmaLinux Security Update for qt5 (ALSA-2023:6369)
- 941424 AlmaLinux Security Update for qt5-qtbase (ALSA-2023:6967)