Alerts This Week
Warning Icon 1 631
Alerts This Week
Warning Icon 1 631

Ubuntu 23: 2025-e91a36bd9a4 Essential: Json-web-token Security Patch

fedora
Calendar Grey March 7, 2024
Dist Fedora Esm H88
Fedora 38 has rolled out a crucial update that targets a side channel vulnerability in cpp-jwt, aimed at strengthening the overall security measures.
Fix side channel vulnerability

Summary

JSON Web Token(JWT) is a JSON based standard (RFC-

7519) for creating assertions or access tokens that consists of some

claims (encoded within the assertion). This assertion can be used in some

kind of bearer authentication mechanism that the server will provide to

clients, and the clients can make use of the provided assertion for

accessing resources.

Update Information:

Fix side channel vulnerability

Change Log

* Tue Feb 27 2024 Jonathan Wright - 1.4-7 - Fix side channel vulnerability rhbz#2263329

References


[ 1 ] Bug #2263329 - Side-channel in cpp-jwt https://bugzilla.redhat.com/show_bug.cgi?id=2263329

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2024-d76e37ba62' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html

Severity
important
Lowest
Low
Medium
High
Critical

Name: cpp-jwt
Product: Fedora 38
Version: 1.4
Release: 7.fc38
Summary: JSON Web Token library for C++

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here