Lucene search

K
oraclelinuxOracleLinuxELSA-2021-4325
HistoryNov 16, 2021 - 12:00 a.m.

lasso security and enhancement update

2021-11-1600:00:00
linux.oracle.com
24
update
xml signature wrapping
vulnerability
lasso security

EPSS

0.006

Percentile

78.1%

[2.6.0-12]

  • Fix a dead code issue in the signature wrapping patch
  • Resolves: rhbz#1951653 - CVE-2021-28091 lasso: XML signature wrapping
    vulnerability when parsing SAML responses [rhel-8]
    [2.6.0-11]
  • Bump release to force the package through OSCI as the previous
    build reached CI just in time for an outage
  • Related: rhbz#1888195 - [RFE] release (built) python3-lasso pkg (comingfrom lasso)
    [2.6.0-10]
  • Resolves: rhbz#1951653 - CVE-2021-28091 lasso: XML signature wrapping
    vulnerability when parsing SAML responses [rhel-8]
    [2.6.0-9]
  • Resolves: rhbz#1888195 - [RFE] release (built) python3-lasso pkg (coming
    from lasso)