CVE-2024-36048 Information

Description

QAbstractOAuth in Qt Network Authorization in Qt before 5.15.17 6.x before 6.2.13 6.3.x through 6.5.x before 6.5.6 and 6.6.x through 6.7.x before 6.7.1 uses only the time to seed the PRNG which may result in guessable values.

Reference

https://codereview.qt-project.org/c/qt/qtnetworkauth/+/560317 https://codereview.qt-project.org/c/qt/qtnetworkauth/+/560368

Share on: