latchset jose through version 11 allows attackers to cause a denial of service (CPU consumption) via a large p2c (aka PBES2 Count) value.
CVSS
No CVSS.
References
Configurations
History
17 Jun 2025, 13:12
Type | Values Removed | Values Added |
---|---|---|
First Time |
Fedoraproject
Latchset Latchset jose Fedoraproject fedora |
|
CPE | cpe:2.3:o:fedoraproject:fedora:39:*:*:*:*:*:*:* cpe:2.3:o:fedoraproject:fedora:40:*:*:*:*:*:*:* cpe:2.3:o:fedoraproject:fedora:38:*:*:*:*:*:*:* cpe:2.3:a:latchset:jose:*:*:*:*:*:*:*:* |
|
References | () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/CIFPQUCLNWEAHYYJWCQD3AZPWYIV6YT3/ - Mailing List, Third Party Advisory | |
References | () https://github.com/latchset/jose - Product | |
References | () https://github.com/P3ngu1nW/CVE_Request/blob/main/latch-jose.md - Exploit, Third Party Advisory | |
References | () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/W7EGLOAFN2PWZ75ZRLTUDUZCIPH2VFZU/ - Mailing List, Third Party Advisory | |
References | () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/OOBFVMOAV732C7PY74AHJ62ZNKT3ISZ6/ - Mailing List, Third Party Advisory |
19 Apr 2024, 23:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
19 Apr 2024, 04:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
20 Mar 2024, 17:18
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-03-20 16:15
Updated : 2025-06-17 13:12
NVD link : CVE-2023-50967
Mitre link : CVE-2023-50967
JSON object : View
Products Affected
fedoraproject
- fedora
latchset
- jose
CWE
No CWE.