VYPR
High severity7.8NVD Advisory· Published Jun 1, 2023· Updated Jun 17, 2026

CVE-2023-34312

CVE-2023-34312

Description

In Tencent QQ through 9.7.8.29039 and TIM through 3.4.7.22084, QQProtect.exe and QQProtectEngine.dll do not validate pointers from inter-process communication, which leads to a write-what-where condition.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

5
  • Tencent/QQ2 versions
    cpe:2.3:a:tencent:qq:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:tencent:qq:*:*:*:*:*:*:*:*range: >=9.7.1.28940,<=9.7.8.29039
    • (no CPE)range: <=9.7.8.29039
  • Tencent/TIM2 versions
    cpe:2.3:a:tencent:tim:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:tencent:tim:*:*:*:*:*:*:*:*range: >=3.4.5.22071,<=3.4.7.22084
    • (no CPE)range: <=3.4.7.22084
  • Tencent/QQProtectdescription

Patches

Vulnerability mechanics

News mentions

0

No linked articles in our index yet.