|
|
| |
|
| |
opensaml2: XML signature wrapping attack
| Package(s): | opensaml2 |
CVE #(s): | CVE-2011-1411
|
| Created: | July 25, 2011 |
Updated: | September 27, 2011 |
| Description: |
From the Debian advisory:
Juraj Somorovsky, Andreas Mayer, Meiko Jensen, Florian Kohlar, Marco
Kampmann and Joerg Schwenk discovered that Shibboleth, a federated web
single sign-on system is vulnerable to XML signature wrapping attacks.
More details can be found in the Shibboleth
advisory at http://shibboleth.internet2.edu/security-advisories.html.
|
| Alerts: |
|
( Log in to post comments)
|
|
|