Skip to content
GitLab
Explore
Sign in
Register
Commits on Source (2)
take simplesamlphp
· 83fa7cd1
Thijs Kinkhorst
authored
Mar 02, 2018
83fa7cd1
Reserve DLA-1297-1 for simplesamlphp
· cd4f5ba9
Thijs Kinkhorst
authored
Mar 02, 2018
cd4f5ba9
Show whitespace changes
Inline
Side-by-side
data/CVE/list
View file @
cd4f5ba9
...
...
@@ -3311,7 +3311,8 @@ CVE-2018-6520 (SimpleSAMLphp before 1.15.2 allows remote attackers to bypass an
CVE-2018-6519 (The SAML2 library before 1.10.4, 2.x before 2.3.5, and 3.x before 3.1.1 ...)
{DSA-4127-1}
- simplesamlphp 1.15.2-1
[wheezy] - simplesamlphp <ignored> (Minor issue)
[wheezy] - simplesamlphp <not-affected> (Vulnerable code not present)
NOTE: minor issue
NOTE: https://simplesamlphp.org/security/201801-01
NOTE: The issue lies in the simplesamlphp/saml2 part, which is
NOTE: updated in 1.15.2 to the respective fixed version.
data/DLA/list
View file @
cd4f5ba9
[02 Mar 2018] DLA-1297-1 simplesamlphp - security update
{CVE-2016-9814 CVE-2016-9955}
[wheezy] - simplesamlphp 1.9.2-1+deb7u3
[28 Feb 2018] DLA-1296-1 xmltooling - security update
{CVE-2018-0489}
[wheezy] - xmltooling 1.4.2-5+deb7u3
...
...
data/dla-needed.txt
View file @
cd4f5ba9
...
...
@@ -92,9 +92,6 @@ ruby1.9.1 (Emilio Pozuelo)
--
rubygems (Emilio Pozuelo)
--
simplesamlphp
NOTE: 20180227: details under embargo (anarcat)
--
tiff
NOTE: incomplete fix of CVE-2017-18013
--
...
...