Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Davidebeatrici

#34764of 53,633
7.5Total CVSS
Vulnerabilities · 1
PT-2020-13805
7.5
2020-06-08
Qt Company · Qt · CVE-2020-13962
**Name of the Vulnerable Software and Affected Versions** Qt versions 5.12.2 through 5.14.2 **Description** The issue mishandles OpenSSL's error queue, which can cause a denial of service to QSslSocket users. Because errors leak in unrelated TLS sessions, an unrelated session may be disconnected when any handshake fails. **Recommendations** For Qt versions 5.12.2 through 5.14.2, consider updating to a version where this issue is resolved, as the current version can cause a denial of service to QSslSocket users due to the mishandling of OpenSSL's error queue. At the moment, there is no information about a newer version that contains a fix for this vulnerability.