FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

jose -- DoS vulnerability

Affected packages
jose < 13

Details

VuXML ID 02be46c1-f7cc-11ee-aa6b-b42e991fc52e
Discovery 2024-03-20
Entry 2024-04-11

cve@mitre.org reports:

latchset jose through version 11 allows attackers to cause a denial of service (CPU consumption) via a large p2c (aka PBES2 Count) value.

References

CVE Name CVE-2023-50967
URL https://nvd.nist.gov/vuln/detail/CVE-2023-50967