Out-of-bounds Read Affecting qt/qtconnectivity package, versions [5.4.0,6.8.2)[6.9.0-beta1,6.9.0-beta2)


Severity

Recommended
0.0
medium
0
10

CVSS assessment by Snyk's Security Team. Learn more

Threat Intelligence

EPSS
0.18% (8th percentile)

Do your applications use this vulnerable package?

In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.

Test your applications

Snyk Learn

Learn about Out-of-bounds Read vulnerabilities in an interactive lesson.

Start learning
  • Snyk IDSNYK-UNMANAGED-QTQTCONNECTIVITY-13893779
  • published10 Dec 2025
  • disclosed31 Oct 2025
  • creditMarc Mutz

Introduced: 31 Oct 2025

CVE-2025-23050  (opens in a new tab)
CWE-125  (opens in a new tab)

How to fix?

Upgrade qt/qtconnectivity to version 6.8.2, 6.9.0-beta2 or higher.

Overview

Affected versions of this package are vulnerable to Out-of-bounds Read via the QLowEnergyController when handling malformed Bluetooth ATT commands on Linux. An attacker can cause denial of service by sending specially crafted Bluetooth ATT commands that trigger an out-of-bounds read or division by zero.

Note: According to Qt Group, the fix is also backported to 6.5.9 and 5.15.19; however, at the time of writing, those versions have not been released. Patches are available as diff files here

CVSS Base Scores

version 4.0
version 3.1