CVE-2023-51714: Debian Linux
Critical severity, CVSS 9.8. EPSS: 1% chance of exploitation in the next 30 days.
An issue was discovered in the HTTP2 implementation in Qt before 5.15.17, 6.x before 6.2.11, 6.3.x through 6.5.x before 6.5.4, and 6.6.x before 6.6.2. network/access/http2/hpacktable.cpp has an incorrect HPack integer overflow check.
Affected products
- Debian Debian Linux: version 10.0 only
- Qt Qt: from 5.7, before 5.15.17 (fixed in 5.15.17); from 6.0.0, before 6.2.11 (fixed in 6.2.11); from 6.3.0, before 6.5.4 (fixed in 6.5.4); from 6.6.0, before 6.6.2 (fixed in 6.6.2)
Published 2023-12-24. Last modified 2026-10-08.