latchset jose through version 11 allows attackers to cause a denial of service (CPU consumption) via a large p2c (aka PBES2 Count) value.
References
Configurations
History
17 Jun 2025, 13:12
Type | Values Removed | Values Added |
---|---|---|
References | () https://github.com/P3ngu1nW/CVE_Request/blob/main/latch-jose.md - Exploit, Third Party Advisory | |
References | () https://github.com/latchset/jose - Product | |
References | () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/CIFPQUCLNWEAHYYJWCQD3AZPWYIV6YT3/ - Mailing List, Third Party Advisory | |
References | () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/OOBFVMOAV732C7PY74AHJ62ZNKT3ISZ6/ - Mailing List, Third Party Advisory | |
References | () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/W7EGLOAFN2PWZ75ZRLTUDUZCIPH2VFZU/ - Mailing List, Third Party Advisory | |
CPE | cpe:2.3:o:fedoraproject:fedora:39:*:*:*:*:*:*:* cpe:2.3:o:fedoraproject:fedora:40:*:*:*:*:*:*:* cpe:2.3:o:fedoraproject:fedora:38:*:*:*:*:*:*:* cpe:2.3:a:latchset:jose:*:*:*:*:*:*:*:* |
|
First Time |
Latchset jose
Fedoraproject Latchset Fedoraproject fedora |
Information
Published : 2024-03-20 16:15
Updated : 2025-06-17 13:12
NVD link : CVE-2023-50967
Mitre link : CVE-2023-50967
CVE.ORG link : CVE-2023-50967
JSON object : View
Products Affected
latchset
- jose
fedoraproject
- fedora
CWE
CWE-400
Uncontrolled Resource Consumption