CVE-2023-51714: Integer Overflow
An issue was discovered in the HTTP2 implementation in Qt before 5.15.17, 6.x before 6.2.11, 6.3.x through 6.5.x before 6.5.4, and 6.6.x before 6.6.2. network/access/http2/hpacktable.cpp has an incorrect HPack integer overflow check.
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2023-51714?
CVE-2023-51714 has been classified with a severity that may impact systems using affected QT versions due to an integer overflow in the HTTP2 implementation.
How do I fix CVE-2023-51714?
To fix CVE-2023-51714, upgrade the QT package to versions 5.15.17, 6.2.11, 6.5.4, or 6.6.2 or later.
Which QT versions are affected by CVE-2023-51714?
QT versions prior to 5.15.17, between 6.0.0 and 6.2.11, between 6.3.0 and 6.5.4, and between 6.6.0 and 6.6.2 are affected by CVE-2023-51714.
What type of vulnerability is CVE-2023-51714?
CVE-2023-51714 is an integer overflow vulnerability found in the HTTP2 implementation of QT.
Is CVE-2023-51714 present in QT 6.5.4?
No, CVE-2023-51714 is not present in QT version 6.5.4 as it is a remedied version.