Ubuntu Security Notice USN-5526-2...

- AV AC AU C I A
发布: 2022-08-17
修订: 2025-04-13

Ubuntu Security Notice 5526-2 - USN-5526-1 fixed vulnerabilities in PyJWT. Unfortunately this caused a regression by incrementing the internal package version number on Ubuntu 22.04 LTS. This update fixes the problem. Aapo Oksman discovered that PyJWT incorrectly handled signatures constructed from SSH public keys. A remote attacker could use this to forge a JWT signature.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息