[ALSA-2023:6431] Moderate: libfastjson security update
Type:
security
Severity:
moderate
Release date:
2023-11-14
Description:
The libfastjson library provides essential JavaScript Object Notation (JSON) handling functions. The library enables users to construct JSON objects in C, output them as JSON-formatted strings, and convert JSON-formatted strings back to the C representation of JSON objects. Security Fix(es): * json-c, libfastjson: integer overflow and out-of-bounds write via a large JSON file (CVE-2020-12762) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the AlmaLinux Release Notes linked from the References section.
Updated packages listed below:
Architecture Package Checksum
aarch64 libfastjson-devel-0.99.9-5.el9.aarch64.rpm 1afc430711d823780142130b5b67a1a2e0f54bdd0dbffb2fee487ecb92fef569
aarch64 libfastjson-0.99.9-5.el9.aarch64.rpm c8de3e87ef3b304dbf8e95e7b68e9e3eef02cc027c3ec0b798128967a60b6b10
i686 libfastjson-0.99.9-5.el9.i686.rpm 1e74c7d6ad097677157863d4cc259bf3c45a7b6e2de7e15673dcb385dba3f0cf
ppc64le libfastjson-devel-0.99.9-5.el9.ppc64le.rpm 128b333e7691df1a33b0157b120945bcf1e74628b7f753e990400f2c36206906
ppc64le libfastjson-0.99.9-5.el9.ppc64le.rpm ef57255ea8a0a4a8a0924abf67ad2671d75827d1dc5ed0d0d8dede7956000130
s390x libfastjson-0.99.9-5.el9.s390x.rpm 3d9f1c33bd8fe9048cf76b2b238c0a4a9754057e515e32e27a74a2ce164ebac4
s390x libfastjson-devel-0.99.9-5.el9.s390x.rpm a54b41774461638b18ea49dac35425f86bcf96c222d180aa60057880520a80ab
x86_64 libfastjson-0.99.9-5.el9.x86_64.rpm 9fde7e1944cd59a388d257511d89b0431c8409189d4020a702fcb818dc9a8ad7
x86_64 libfastjson-devel-0.99.9-5.el9.x86_64.rpm a053f1f38e7a7d3eebae90524cc49012e9454c86c444787ca17644fe1a9bf45a
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.