Qiskit could allow a local attacker to cause a denial of service due to a stack overflow during deserialization of QPY payloads. A malicious QPY payload can trigger a segmentation fault, causing the application to crash when deserializing untrusted input.
References
| Link | Resource |
|---|---|
| https://www.ibm.com/support/pages/node/7285932 |
Configurations
No configuration.
History
No history.
Information
Published : 2026-09-03 20:17
Updated : 2026-09-08 14:17
NVD link : CVE-2026-19795
Mitre link : CVE-2026-19795
CVE.ORG link : CVE-2026-19795
JSON object : View
Products Affected
No product.
CWE
CWE-502
Deserialization of Untrusted Data
