A vulnerability was found in JWCrypto. This flaw allows an attacker to cause a denial of service (DoS) attack and possible password brute-force and dictionary attacks to be more resource-intensive. This issue can result in a large amount of computational consumption, causing a denial of service attack.
Workaround:
The product does not properly control the allocation and maintenance of a limited resource.
Link | Tags |
---|---|
https://access.redhat.com/errata/RHSA-2024:3267 | third party advisory vendor advisory |
https://access.redhat.com/errata/RHSA-2024:9281 | vendor advisory |
https://access.redhat.com/security/cve/CVE-2023-6681 | third party advisory vdb entry |
https://bugzilla.redhat.com/show_bug.cgi?id=2260843 | third party advisory issue tracking |