VYPR
Unrated severityNVD Advisory· Published Jul 22, 2010· Updated Apr 29, 2026

CVE-2010-1766

CVE-2010-1766

Description

Off-by-one error in the WebSocketHandshake::readServerHandshake function in websockets/WebSocketHandshake.cpp in WebCore in WebKit before r56380, as used in Qt and other products, allows remote websockets servers to cause a denial of service (memory corruption) or possibly have unspecified other impact via an upgrade header that is long and invalid.

Affected products

2
  • cpe:2.3:a:digia:qt:*:*:*:*:*:*:*:*
    Range: <=4.6.2
  • cpe:2.3:a:webkit:webkit:*:*:*:*:*:*:*:*
    Range: <=r56379

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

15

News mentions

0

No linked articles in our index yet.