openSUSE 15 Security Update : rubygem-json-jwt (openSUSE-SU-2025:0004-1)
Discription

The remote openSUSE 15 host has packages installed that are affected by multiple vulnerabilities as referenced in the openSUSE-SU-2025:0004-1 advisory. – New upstream release 1.16.6, see bundled CHANGELOG.md – Remove padding oracle by @btoews in https://github.com/nov/json-jwt/pull/109 – Fixes CVE-2023-51774 boo#1220727 – updated to version 1.11.0 – no changelog found – Fixes CVE-2019-18848 boo#1156649 Tenable has extracted the preceding description block directly from the SUSE security advisory. Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version…Read More
References
Back to Main