There is an incomplete cleanup vulnerability in Qt Network's Schannel support on Windows which can lead to a Denial of Service over a long period.This issue affects Qt from 5.15.0 through 6.8.3, from 6.9.0 before 6.9.2.
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://codereview.qt-project.org/c/qt/qtbase/+/651495 |
|
History
Tue, 21 Oct 2025 09:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Microsoft
Microsoft windows Qt Qt qt |
|
| Vendors & Products |
Microsoft
Microsoft windows Qt Qt qt |
Thu, 16 Oct 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 16 Oct 2025 09:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | There is an incomplete cleanup vulnerability in Qt Network's Schannel support on Windows which can lead to a Denial of Service over a long period.This issue affects Qt from 5.15.0 through 6.8.3, from 6.9.0 before 6.9.2. | |
| Title | Possible denial of service with multiple incoming connections to a Schannel based server with a TLS backend | |
| Weaknesses | CWE-459 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: TQtC
Published: 2025-10-16T09:22:14.709Z
Updated: 2025-10-16T13:14:11.939Z
Reserved: 2025-06-19T10:25:01.875Z
Link: CVE-2025-6338
Updated: 2025-10-16T13:14:08.583Z
Status : Awaiting Analysis
Published: 2025-10-16T10:15:44.510
Modified: 2025-10-16T15:28:59.610
Link: CVE-2025-6338
No data.