Bug 2526663 - CVE-2026-51106 qtox: TokTok qTox: Denial of Service via src/persistence/serialize.cpp [fedora-all]
Summary: CVE-2026-51106 qtox: TokTok qTox: Denial of Service via src/persistence/seria...
Keywords:
Status: NEW
Alias: None
Product: Fedora
Classification: Fedora
Component: qtox
Version: rawhide
Hardware: Unspecified
OS: Unspecified
medium
medium
Target Milestone: ---
Assignee: Nikolay
QA Contact:
URL:
Whiteboard: {"flaws": ["8b627469-8d4d-4cd7-8999-d...
Depends On:
Blocks: CVE-2026-51106
TreeView+ depends on / blocked
 
Reported: 2026-09-01 07:22 UTC by Vladimir Vasilev
Modified: 2026-09-02 03:47 UTC (History)
2 users (show)

Fixed In Version:
Clone Of:
Environment:
Last Closed:
Type: ---
Embargoed:


Attachments (Terms of Use)

Description Vladimir Vasilev 2026-09-01 07:22:40 UTC
Disclaimer: Community trackers are created by Red Hat Product Security team on a best effort basis. Package maintainers are required to ascertain if the flaw indeed affects their package, before starting the update process.

An issue in TokTok qTox v1.18.4 allows a local attacker to cause a denial of service via the src/persistence/serialize.cpp component

Comment 1 Nikolay 2026-09-02 03:47:20 UTC
Here is the Git hub issue: https://github.com/TokTok/qTox/issues/706. The Fix was already merged (PR: https://github.com/TokTok/qTox/pull/707). It will be released in qTox v. v1.18.6.


Note You need to log in before you can comment on or make changes to this bug.