An out-of-bounds read in Qt NFC's language code length parsing allows a physically proximate attacker to cause a denial of service or limited memory disclosure via a crafted NFC tag.

Project Subscriptions

Vendors Products
Advisories

No advisories yet.

Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Fri, 11 Sep 2026 06:30:00 +0000

Type Values Removed Values Added
Description An out-of-bounds read in Qt NFC's language code length parsing allows a physically proximate attacker to cause a denial of service or limited memory disclosure via a crafted NFC tag.
Title Out-of-bounds read and integer underflow vulnerability in QNdefNfcTextRecord impacts Qt NFC module
First Time appeared Qt
Qt qt
Weaknesses CWE-125
CWE-191
CPEs cpe:2.3:a:qt:qt:*:*:*:*:*:*:*:*
Vendors & Products Qt
Qt qt
References
Metrics cvssV4_0

{'score': 6.9, 'vector': 'CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:A/VC:L/VI:N/VA:H/SC:N/SI:N/SA:N'}


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: Qt

Published:

Updated: 2026-09-11T06:11:01.742Z

Reserved: 2026-06-25T12:20:33.980Z

Link: CVE-2026-13326

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-09-11T07:16:45.620

Modified: 2026-09-11T07:16:45.620

Link: CVE-2026-13326

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses