{"id":"CVE-2023-34410","details":"An issue was discovered in Qt before 5.15.15, 6.x before 6.2.9, and 6.3.x through 6.5.x before 6.5.2. Certificate validation for TLS does not always consider whether the root of a chain is a configured CA certificate.","modified":"2026-04-10T04:58:30.716725Z","published":"2023-06-05T03:15:09.390Z","related":["ALSA-2023:6369","ALSA-2023:6967","SUSE-SU-2023:2971-1","SUSE-SU-2023:2982-1","SUSE-SU-2023:3018-1","SUSE-SU-2023:3207-1","SUSE-SU-2023:3225-1","SUSE-SU-2023:3380-1","SUSE-SU-2023:4622-1","SUSE-SU-2025:02968-1","openSUSE-SU-2024:12980-1","openSUSE-SU-2024:13006-1"],"references":[{"type":"ADVISORY","url":"https://lists.debian.org/debian-lts-announce/2023/08/msg00028.html"},{"type":"ADVISORY","url":"https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/UE3IHQZCEUFVOPWG75V2HDKXNUZBB4FX/"},{"type":"FIX","url":"https://codereview.qt-project.org/c/qt/qtbase/+/477560"},{"type":"FIX","url":"https://codereview.qt-project.org/c/qt/qtbase/+/480002"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/qt/qtbase","events":[{"introduced":"fc9ae22c88dd085c7c31599037132fc756feeb04"},{"fixed":"ca725ad9c5331a657c328bf624f2b0b713623276"},{"introduced":"fc9cda5f08ac848e88f63dd4a07c08b2fbc6bf17"},{"fixed":"f131837a9fcc83dcfb70a0a91b1baacb6ccf14a2"},{"introduced":"9554d315aa74eaba1726405ee09117e2ebc6111f"},{"fixed":"af457a9f0f7eb1a2a7d11f495da508faab91a442"}],"database_specific":{"versions":[{"introduced":"5.13.0"},{"fixed":"5.15.15"},{"introduced":"6.0.0"},{"fixed":"6.2.9"},{"introduced":"6.3.0"},{"fixed":"6.5.2"}]}}],"database_specific":{"unresolved_ranges":[{"events":[{"introduced":"0"},{"last_affected":"10.0"}]},{"events":[{"introduced":"0"},{"last_affected":"38"}]}],"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-34410.json"}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N"}]}