[CLSA-2026:1776354546] jq: Fix of CVE-2024-23337
Type:
security
Severity:
('Moderate', ['ELSCVE-51770'])
Release date:
2026-04-16 15:49:11 UTC
Description:
- CVE-2024-23337: fix signed integer overflow in jvp_array_write and jvp_object_rehash that could lead to SEGV on growing arrays and objects
Updated packages:
  • jq-1.6-14.el9.tuxcare.els2.i686.rpm
    sha:d4255d67d0af3227297f62b1cdb699ab846331adabed18d06fd342fe491c58d6
  • jq-1.6-14.el9.tuxcare.els2.x86_64.rpm
    sha:915c64d64e870721bba66039049b11dfaef0bfd76e28673c779ea7b1aa60de53
  • jq-devel-1.6-14.el9.tuxcare.els2.i686.rpm
    sha:ce3d9c207a1e16e708cf13b83205bde9a73669492b7b2bc927d9ae3b07c379ec
  • jq-devel-1.6-14.el9.tuxcare.els2.x86_64.rpm
    sha:52141a79ac2b5e06abcb2f42f517166bad5ea5d5d2c28a33c6be9e11e0adc728
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.