latchset jose through version 11 allows attackers to cause a denial of service (CPU consumption) via a large p2c (aka PBES2 Count) value.
                
            References
                    Configurations
                    History
                    17 Jun 2025, 13:12
| Type | Values Removed | Values Added | 
|---|---|---|
| CPE | cpe:2.3:o:fedoraproject:fedora:39:*:*:*:*:*:*:* cpe:2.3:o:fedoraproject:fedora:40:*:*:*:*:*:*:* cpe:2.3:o:fedoraproject:fedora:38:*:*:*:*:*:*:* cpe:2.3:a:latchset:jose:*:*:*:*:*:*:*:* | |
| First Time | Latchset jose Fedoraproject Latchset Fedoraproject fedora | |
| References | () https://github.com/P3ngu1nW/CVE_Request/blob/main/latch-jose.md - Exploit, Third Party Advisory | |
| References | () https://github.com/latchset/jose - Product | |
| References | () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/CIFPQUCLNWEAHYYJWCQD3AZPWYIV6YT3/ - Mailing List, Third Party Advisory | |
| References | () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/OOBFVMOAV732C7PY74AHJ62ZNKT3ISZ6/ - Mailing List, Third Party Advisory | |
| References | () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/W7EGLOAFN2PWZ75ZRLTUDUZCIPH2VFZU/ - Mailing List, Third Party Advisory | 
Information
                Published : 2024-03-20 16:15
Updated : 2025-06-17 13:12
NVD link : CVE-2023-50967
Mitre link : CVE-2023-50967
CVE.ORG link : CVE-2023-50967
JSON object : View
Products Affected
                latchset
- jose
fedoraproject
- fedora
CWE
                
                    
                        
                        CWE-400
                        
            Uncontrolled Resource Consumption
