[Forgot Password]
Login  Register Subscribe

30480

 
 

423868

 
 

251782

 
 

909

 
 

196543

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

DSA-4926-1 lasso -- lasso

ID: oval:org.secpod.oval:def:73658Date: (C)2021-07-05   (M)2023-11-13
Class: PATCHFamily: unix




It was discovered that liblasso3-dev, a library which implements SAML 2.0 and Liberty Alliance standards, did not properly verify that all assertions in a SAML response were properly signed, allowing an attacker to impersonate users or bypass access control.

Platform:
Linux Mint 4
Product:
liblasso3-dev
Reference:
DSA-4926-1
CVE-2021-28091
CVE    1
CVE-2021-28091

© SecPod Technologies