CVE-2010-2621
The QSslSocketBackendPrivate::transmit function in src_network_ssl_qsslsocket_openssl.cpp in Qt 4.6.3 and earlier allows remote attackers to cause a denial of service (infinite loop) via a malformed request.
- Affected products
- Qt
- Digia Qt
- ≤ 4.6.3
- Qt
- = 4.0.0, 4.0.1, 4.1.0, 4.1.1, 4.1.2, 4.1.3, 4.1.4, 4.1.5, 4.2.0, 4.2.1, 4.2.3, 4.3.0, 4.3.1, 4.3.2, 4.3.3, 4.3.4, 4.3.5, 4.4.0, 4.4.1, 4.4.2, 4.4.3, 4.5.0, 4.5.1, 4.5.2, 4.5.3, 4.6.0, 4.6.1, 4.6.2
- Fix
- Available
- CVSS 2.0
- 5.0 MEDIUM
- EPSS
- 10.5% (95th percentile)
- Weakness
- CWE-20
- NVD status
- Modified
- Published
- 2010-07-02
CVE-2010-2621 at NVD
1 known exploit for CVE-2010-2621
Proof-of-concept code and exploit modules indexed by Sploitus