- update to 0.9.5 - important changes: * fix denial of service (CPU consumption) via a large p2c (aka PBES2 Count) value - CVE-2023-51775 (bsc#1220726) * Add RFC 8037 support: EdDSA for JWS with Ed25519 & Ed448 (needs Java 17) X25519 & X448 ECDH for JWE (needs Java 11) OKP (Octet Key Pair) type for JWK * Add support for the ES256K JWS alg (ECDSA using secp256k1 curve and SHA-256 per RFC8812) and the secp256k1 EC JWK crv * Add support for producing RFC9278 JWK Thumbprint URI values * more changes in the Release Notes https://bitbucket.org/b_c/jose4j/wiki/Release%20Notes - Remove: PBES2-check-iteration-count.patch - fix package group OBS-URL: https://build.opensuse.org/request/show/1153823 OBS-URL: https://build.opensuse.org/package/show/Java:packages/jose4j?expand=0&rev=6
4 lines
131 B
Plaintext
4 lines
131 B
Plaintext
version https://git-lfs.github.com/spec/v1
|
|
oid sha256:ab76baf922ad9609d713d6803b26d63f09502e2d89b057c31894b3781cb0a474
|
|
size 443306
|