[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Track fixing commit for CVE-2017-18122
Salvatore Bonaccorso
carnil at debian.org
Sat Feb 3 07:57:50 UTC 2018
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
bf0b74f1 by Salvatore Bonaccorso at 2018-02-03T08:57:20+01:00
Track fixing commit for CVE-2017-18122
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
--- a/data/CVE/list
+++ b/data/CVE/list
@@ -81,6 +81,7 @@ CVE-2018-6550 (Monstra CMS through 3.0.4 has XSS in the title function in ...)
CVE-2017-18122 (A signature-validation bypass issue was discovered in SimpleSAMLphp ...)
- simplesamlphp 1.15.0-1
NOTE: https://simplesamlphp.org/security/201710-01
+ NOTE: https://github.com/simplesamlphp/simplesamlphp/commit/e2d53086abbb253efb24ddcb49b116246eb0b6ca (v1.14.17)
CVE-2017-18121 (The consentAdmin module in SimpleSAMLphp through 1.14.15 is vulnerable ...)
- simplesamlphp 1.15.0-1
NOTE: https://simplesamlphp.org/security/201709-01
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/bf0b74f17f51d8be9f661f8bb3a05859910b1fbd
---
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/bf0b74f17f51d8be9f661f8bb3a05859910b1fbd
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.alioth.debian.org/pipermail/secure-testing-commits/attachments/20180203/036e24a0/attachment.html>
More information about the Secure-testing-commits
mailing list