Alerts This Week
Warning Icon 1 692
Alerts This Week
Warning Icon 1 692

Oracle Linux 9 ELSA-2023-4411 Important: CJose AES Decryption Fix

oracle
Calendar Grey August 10, 2023
Oracle Linux Logo Esm H88
Oracle Linux Security Advisory ELSA-2023-4422 addresses a critical issue in CJose, fixing vulnerabilities related to AES GCM encryption flaws.
The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

Summary

[0.6.1-13] - CVE-2023-37464 cjose: AES GCM decryption uses the Tag length from the actual Authentication Tag provided in the JWE Resolves: rhbz#2223308

SRPMs

https://oss.oracle.com:443/ol9/SRPMS-updates//cjose-0.6.1-13.el9_2.src.rpm

x86_64

cjose-0.6.1-13.el9_2.i686.rpm cjose-0.6.1-13.el9_2.x86_64.rpm

aarch64

cjose-0.6.1-13.el9_2.aarch64.rpm

Severity
important
Lowest
Low
Medium
High
Critical

Related CVEs: CVE-2023-37464

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here