Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2024-9281

Опубликовано: 14 нояб. 2024
Источник: oracle-oval
Платформа: Oracle Linux 9

Описание

ELSA-2024-9281: python-jwcrypto security update (MODERATE)

[1.5.6-2]

  • Disable auto-generation of dependencies Related: RHEL-34809

[1.5.6-1]

  • Rebase to version 1.5.6 Resolve: RHEL-34809

Обновленные пакеты

Oracle Linux 9

Oracle Linux aarch64

python3-jwcrypto

1.5.6-2.el9

Oracle Linux x86_64

python3-jwcrypto

1.5.6-2.el9

Связанные CVE

Связанные уязвимости

CVSS3: 5.3
ubuntu
больше 1 года назад

A vulnerability was found in JWCrypto. This flaw allows an attacker to cause a denial of service (DoS) attack and possible password brute-force and dictionary attacks to be more resource-intensive. This issue can result in a large amount of computational consumption, causing a denial of service attack.

CVSS3: 5.3
redhat
больше 1 года назад

A vulnerability was found in JWCrypto. This flaw allows an attacker to cause a denial of service (DoS) attack and possible password brute-force and dictionary attacks to be more resource-intensive. This issue can result in a large amount of computational consumption, causing a denial of service attack.

CVSS3: 5.3
nvd
больше 1 года назад

A vulnerability was found in JWCrypto. This flaw allows an attacker to cause a denial of service (DoS) attack and possible password brute-force and dictionary attacks to be more resource-intensive. This issue can result in a large amount of computational consumption, causing a denial of service attack.

CVSS3: 5.3
debian
больше 1 года назад

A vulnerability was found in JWCrypto. This flaw allows an attacker to ...

CVSS3: 5.3
github
больше 1 года назад

DoS with algorithms that use PBKDF2 due to unbounded PBES2 Count value