[ALSA-2023:6551] Moderate: yajl security update
Type:
security
Severity:
moderate
Release date:
2023-11-14
Description:
Yet Another JSON Library (YAJL) is a small event-driven (SAX-style) JSON parser written in ANSI C, and a small validating JSON generator. Security Fix(es): * yajl: Memory leak in yajl_tree_parse function (CVE-2023-33460) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the AlmaLinux Release Notes linked from the References section.
Updated packages listed below:
Architecture Package Checksum
aarch64 yajl-devel-2.1.0-22.el9.aarch64.rpm 263477ca542bae4ff3e41f243fcef11174ce6651fedd0c2aa7e67c4a02bb7282
aarch64 yajl-2.1.0-22.el9.aarch64.rpm 7cdd2c9757b2655863deb4af3a7cd200aaa3fc281512a39dee4aaa4d7ba83544
i686 yajl-devel-2.1.0-22.el9.i686.rpm 4b9f95d4dfdc8099900c49a58d8690be607e7c012ce05cca6970255d273b074d
i686 yajl-2.1.0-22.el9.i686.rpm f2078fc77350398baebee186dc8d79eca803efc50148ec0f59378b491a2a0bb0
ppc64le yajl-2.1.0-22.el9.ppc64le.rpm 2972cb2cdb8e40e4bb7feee8777e570bd8c6a7f079f4dd2904a70e5804f48291
ppc64le yajl-devel-2.1.0-22.el9.ppc64le.rpm b6db35a87152446250ed0edb0fc65b9fd54b8eef84091aaa76e2d599bc691102
s390x yajl-2.1.0-22.el9.s390x.rpm ca3adb18c24f6f645e4de6d2522e7bcee43980b8bc687f5a5d17928c58b7a30a
s390x yajl-devel-2.1.0-22.el9.s390x.rpm e0b12e5ddba644cf95d81e850a699fef96901014e57397afce2080c458e61fdb
x86_64 yajl-2.1.0-22.el9.x86_64.rpm 537c1e046d5e68ac6f868f30fdca0a19909de29400dfbe326f29f0d5a48c3928
x86_64 yajl-devel-2.1.0-22.el9.x86_64.rpm 7822eaf3c5608b809196bbbd0ab9854dd77b547a200821d8655cf53e8dd95542
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.