Openwall GNU/*/Linux - a small security-enhanced Linux distro for servers
[<prev] [next>] [thread-next>] [day] [month] [year] [list]
Date: Tue, 10 Jan 2017 08:29:39 +0100
From: S├ębastien Delafond <>
Subject: CVE request: python-pysaml2 XML external entity attack


the Debian security team would like to request a CVE for an XML XEE
discovered in python-pysaml2 by Matias P. Brutti; python-pysaml2 does
not sanitize SAML XML requests or responses:



Powered by blists - more mailing lists

Your e-mail address:

Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.

Powered by Openwall GNU/*/Linux - Powered by OpenVZ