Alerts This Week
Warning Icon 1 646
Alerts This Week
Warning Icon 1 646

Fedora 39: 2024-78gbc3nehta Critical: Cpp-auth Session Breach Patch

fedora
Calendar Grey March 7, 2024
Dist Fedora Esm H88
Ubuntu 24.04 security patch for lib-crypto resolves a memory leak vulnerability, improving software resilience.
Fix side channel vulnerability

Summary

JSON Web Token(JWT) is a JSON based standard (RFC-

7519) for creating assertions or access tokens that consists of some

claims (encoded within the assertion). This assertion can be used in some

kind of bearer authentication mechanism that the server will provide to

clients, and the clients can make use of the provided assertion for

accessing resources.

Update Information:

Fix side channel vulnerability

Change Log

* Tue Feb 27 2024 Jonathan Wright - 1.4-7 - Fix side channel vulnerability rhbz#2263329

References


[ 1 ] Bug #2263329 - Side-channel in cpp-jwt https://bugzilla.redhat.com/show_bug.cgi?id=2263329

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2024-56fbd2cbfa' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html

Severity
critical
Lowest
Low
Medium
High
Critical

Name: cpp-jwt
Product: Fedora 39
Version: 1.4
Release: 7.fc39
Summary: JSON Web Token library for C++

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here