VYPR

rpm package

suse/libgpg-error&distro=SUSE Linux Enterprise Server for SAP Applications 15 SP2

pkg:rpm/suse/libgpg-error&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2015%20SP2

Vulnerabilities (1)

  • CVE-2024-28180Mar 9, 2024
    affected < 1.29-150000.3.3.1fixed 1.29-150000.3.3.1

    Package jose aims to provide an implementation of the Javascript Object Signing and Encryption set of standards. An attacker could send a JWE containing compressed data that used large amounts of memory and CPU when decompressed by Decrypt or DecryptMulti. Those functions now ret