In Qt through 5.14.1, the WebSocket implementation accepts up to 2GB for frames and 2GB for messages. Smaller limits cannot be configured. This makes it easier for attackers to cause a denial of service (memory consumption).
Version | Score | Severity | Vector String |
---|---|---|---|
3.0 | 8.6 | High | CVSS:3.0/AC:L/AV:N/A:H/C:N/I:N/PR:N/S:C/UI:N |
Product | Vendor | Version |
---|---|---|
n/a | n/a | n/a |