Date: Wed, 14 Dec 2016 15:48:22 +0100 From: Salvatore Bonaccorso <carnil@...ian.org> To: OSS Security Mailinglist <oss-security@...ts.openwall.com> Subject: CVE Request: SimpleSAMLphp: SSPSA 201612-02: Incorrect signature verification Hi SimpleSAMLphp has released (another) update fixing an incorrect signature verification issue (different from SSPSA 201612-01 / CVE-2016-9814). It affects versions of SimpeSAMLphp before 1.14.11. Upstream advisory: https://simplesamlphp.org/security/201612-02 References: https://github.com/simplesamlphp/simplesamlphp/commit/a2326d75dd14accaac162dd2cb30aaefcc1f9205 Could you please assign a CVE for this issue? Regards, Salvatore
Powered by blists - more mailing lists
Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.
Powered by Openwall GNU/*/Linux - Powered by OpenVZ