CVE-2023-50966
Severity CVSS v4.0:
Pending analysis
Type:
CWE-400
Uncontrolled Resource Consumption ('Resource Exhaustion')
Publication date:
19/03/2024
Last modified:
02/08/2024
Description
erlang-jose (aka JOSE for Erlang and Elixir) through 1.11.6 allow attackers to cause a denial of service (CPU consumption) via a large p2c (aka PBES2 Count) value in a JOSE header.
Impact
Base Score 3.x
5.30
Severity 3.x
MEDIUM



