Ubuntu Security Notice USN-6307-1

Discussion in 'News Aggregator' started by Packet Storm, 26 Aug 2023.

  1. Packet Storm

    Packet Storm Guest

    Ubuntu Security Notice 6307-1 - It was discovered that JOSE for C/C++ AES GCM decryption routine incorrectly uses the Tag length from the actual Authentication Tag provided in the JWE. An attacker could use this to cause a denial of service or might expose sensitive information.

    Continue reading...
     

Share This Page

Loading...