Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2023-6681

Опубликовано: 12 фев. 2024
Источник: debian
EPSS Низкий

Описание

A vulnerability was found in JWCrypto. This flaw allows an attacker to cause a denial of service (DoS) attack and possible password brute-force and dictionary attacks to be more resource-intensive. This issue can result in a large amount of computational consumption, causing a denial of service attack.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
python-jwcryptofixed1.5.4-1package
python-jwcryptono-dsabookwormpackage
python-jwcryptono-dsabullseyepackage

Примечания

  • https://bugzilla.redhat.com/show_bug.cgi?id=2260843

  • https://github.com/latchset/jwcrypto/commit/d2655d370586cb830e49acfb450f87598da60be8 (v1.5.1)

EPSS

Процентиль: 6%
0.00029
Низкий

Связанные уязвимости

CVSS3: 5.3
ubuntu
больше 1 года назад

A vulnerability was found in JWCrypto. This flaw allows an attacker to cause a denial of service (DoS) attack and possible password brute-force and dictionary attacks to be more resource-intensive. This issue can result in a large amount of computational consumption, causing a denial of service attack.

CVSS3: 5.3
redhat
больше 1 года назад

A vulnerability was found in JWCrypto. This flaw allows an attacker to cause a denial of service (DoS) attack and possible password brute-force and dictionary attacks to be more resource-intensive. This issue can result in a large amount of computational consumption, causing a denial of service attack.

CVSS3: 5.3
nvd
больше 1 года назад

A vulnerability was found in JWCrypto. This flaw allows an attacker to cause a denial of service (DoS) attack and possible password brute-force and dictionary attacks to be more resource-intensive. This issue can result in a large amount of computational consumption, causing a denial of service attack.

CVSS3: 5.3
github
больше 1 года назад

DoS with algorithms that use PBKDF2 due to unbounded PBES2 Count value

oracle-oval
7 месяцев назад

ELSA-2024-9281: python-jwcrypto security update (MODERATE)

EPSS

Процентиль: 6%
0.00029
Низкий