Upstream Security Vulnerability?

Peter Schober peter.schober at univie.ac.at
Wed Mar 19 17:32:34 GMT 2025


Jonathan Proulx <jon at csail.mit.edu> [2025-03-19 18:30 CET]:
> I don't see any related issue at
> https://security-tracker.debian.org/tracker/source-package/shibboleth-sp
> or
> https://bugs.debian.org/cgi-bin/pkgreport.cgi?package=shibboleth-sp
> 
> Is this on your radar and if not should I open a bug? Or perhaps I'm looking in the wrong direction?

Just at the wrong package:
https://security-tracker.debian.org/tracker/source-package/opensaml
(And the actual debian package you'll see during `apt upgrade` will be
called libsaml<n>, neither "opensaml" nor "shibboleth-sp".)

HTH,
-peter



More information about the Pkg-shibboleth-devel mailing list