HIGHCVE-2026-6328Published Modified CNA alibaba
CVE-2026-6328: XQUIC Improper STREAM Frame Validation in Initial/Handshake Packets
Improper input validation, Improper verification of cryptographic signature vulnerability in XQUIC Project XQUIC xquic on Linux (QUIC protocol implementation, packet processing module, STREAM frame handler modules) allows Protocol Manipulation.This issue affects XQUIC: through 1.8.3.
Metrics
- CVSS v4.0
- 8.3
- Severity
- HIGH
- Fixed in
- —
- Affected Products
- 1
Affected packages
- XQUIC Project / XQUIC≤ 1.8.3
CVSS Vector
CVSS:4.0/AV:N/AC:H/AT:N/PR:N/UI:N/VC:L/VI:H/VA:N/SC:N/SI:N/SA:NReferences