UbuntuUpdates.org

Bugs fixes in "shibboleth-sp"

Origin Bug number Title Date fixed
CVE CVE-2021-31826 Shibboleth Service Provider 3.x before 3.2.2 is prone to a NULL pointer dereference flaw involving the session recovery feature. The flaw is exploita 2021-07-20
Launchpad 1926250 CVE-2021-31826: Session recovery feature contains a null pointer deference 2021-07-20
CVE CVE-2021-31826 Shibboleth Service Provider 3.x before 3.2.2 is prone to a NULL pointer dereference flaw involving the session recovery feature. The flaw is exploita 2021-07-20
Launchpad 1926250 CVE-2021-31826: Session recovery feature contains a null pointer deference 2021-07-20
CVE CVE-2021-28963 Shibboleth Service Provider before 3.2.1 allows content injection because template generation uses attacker-controlled parameters. 2021-04-22
Launchpad 1919419 Phishing vulnerability: Template generation allows external parameters to override placeholders 2021-04-22
CVE CVE-2021-28963 Shibboleth Service Provider before 3.2.1 allows content injection because template generation uses attacker-controlled parameters. 2021-04-22
Launchpad 1919419 Phishing vulnerability: Template generation allows external parameters to override placeholders 2021-04-22



About   -   Send Feedback to @ubuntu_updates