Lucene search
Basic search
Lucene search
Search by product
Subscribe
K
Start 30-day trial
Database
Vendors
Products
Years
CVSS
Scanner
Agent Scanning
API Scanning
Manual Audit
Perimeter Scanner
Scanning
Projects
Email
Webhook
Plugins
Resources
Documents
Blog
Glossary
FAQ
Pricing
Contacts
About Us
Partners
Branding Guideline
SIGN IN
OracleLinux
ELSA-2022-1823
History
May 17, 2022 - 12:00 a.m.
Vulners
/
Oraclelinux
/
mod_auth_openidc:2.3 security update
mod_auth_openidc:2.3 security update
2022-05-17
00:00:00
linux.oracle.com
10
0.002 Low
EPSS
Percentile
61.3%
JSON
cjose
[0.6.1-2]
fix concatkdf big endian architecture problem.
Upstream issue #77.
[0.6.1-1]
upgrade to latest upstream 0.6.1
[0.5.1-3]
Rebuilt for
https://fedoraproject.org/wiki/Fedora_29_Mass_Rebuild
[0.5.1-2]
Rebuilt for
https://fedoraproject.org/wiki/Fedora_28_Mass_Rebuild
[0.5.1-1]
Initial packaging
mod_auth_openidc
[2.3.7-11]
Resolves: rhbz#1987222 - CVE-2021-32792 XSS when using OIDCPreservePost On
[2.3.7-10]
Resolves: rhbz#1987216 - CVE-2021-32791 hardcoded static IV and AAD with a
reused key in AES GCM encryption [rhel-8] (edit)
[2.3.7-9]
Resolves: rhbz#2001853 - CVE-2021-39191 open redirect by supplying a crafted URL
in the target_link_uri parameter
Affected Package
OS
Version
Architecture
Package
Version
Filename
oracle linux
8
src
cjose
< 0.6.1-2.module
cjose-0.6.1-2.module+el8+5139+bcb28322.src.rpm
oracle linux
8
src
mod_auth_openidc
< 2.3.7-11.module
mod_auth_openidc-2.3.7-11.module+el8.6.0+20572+b6f23e95.src.rpm
oracle linux
8
aarch64
cjose
< 0.6.1-2.module
cjose-0.6.1-2.module+el8+5139+bcb28322.aarch64.rpm
oracle linux
8
aarch64
cjose-devel
< 0.6.1-2.module
cjose-devel-0.6.1-2.module+el8+5139+bcb28322.aarch64.rpm
oracle linux
8
aarch64
mod_auth_openidc
< 2.3.7-11.module
mod_auth_openidc-2.3.7-11.module+el8.6.0+20572+b6f23e95.aarch64.rpm
oracle linux
8
src
cjose
< 0.6.1-2.module
cjose-0.6.1-2.module+el8+5139+bcb28322.src.rpm
oracle linux
8
src
mod_auth_openidc
< 2.3.7-11.module
mod_auth_openidc-2.3.7-11.module+el8.6.0+20572+b6f23e95.src.rpm
oracle linux
8
x86_64
cjose
< 0.6.1-2.module
cjose-0.6.1-2.module+el8+5139+bcb28322.x86_64.rpm
oracle linux
8
x86_64
cjose-devel
< 0.6.1-2.module
cjose-devel-0.6.1-2.module+el8+5139+bcb28322.x86_64.rpm
oracle linux
8
x86_64
mod_auth_openidc
< 2.3.7-11.module
mod_auth_openidc-2.3.7-11.module+el8.6.0+20572+b6f23e95.x86_64.rpm
Related
osv 8
rocky 1
almalinux 1
redhat 1
nessus 16
fedora 4
openvas 12
suse 2
mageia 1
debian 2
f5 1
cvelist 4
ubuntucve 4
prion 4
debiancve 4
nvd 4
redhatcve 4
cve 4
veracode 4
cbl_mariner 4
rosalinux 1
oracle 1
osv
osv
8
Moderate: mod_auth_openidc:2.3 security update
2022-05-10 06:30:32
Moderate: mod_auth_openidc:2.3 security update
2022-05-10 06:30:32
libapache2-mod-auth-openidc - security update
2023-04-30 00:00:00
rocky
rocky
mod_auth_openidc:2.3 security update
2022-05-10 06:30:32
almalinux
almalinux
Moderate: mod_auth_openidc:2.3 security update
2022-05-10 06:30:32
redhat
redhat
(RHSA-2022:1823) Moderate: mod_auth_openidc:2.3 security update
2022-05-10 06:30:32
nessus
nessus
16
Oracle Linux 8 : mod_auth_openidc:2.3 (ELSA-2022-1823)
2022-05-18 00:00:00
Rocky Linux 8 : mod_auth_openidc:2.3 (RLSA-2022:1823)
2023-11-06 00:00:00
CentOS 8 : mod_auth_openidc:2.3 (CESA-2022:1823)
2022-05-10 00:00:00
fedora
fedora
4
[SECURITY] Fedora 33 Update: mod_auth_openidc-2.4.9-1.fc33
2021-08-08 01:08:40
[SECURITY] Fedora 34 Update: mod_auth_openidc-2.4.9-1.fc34
2021-08-08 01:05:24
[SECURITY] Fedora 35 Update: mod_auth_openidc-2.4.9.4-1.fc35
2021-12-12 01:10:48
openvas
openvas
12
Fedora: Security Advisory for mod_auth_openidc (FEDORA-2021-17f5cedf66)
2021-08-13 00:00:00
Fedora: Security Advisory for mod_auth_openidc (FEDORA-2021-e3017c538a)
2021-08-13 00:00:00
SUSE: Security Advisory (SUSE-SU-2021:3352-1)
2021-10-13 00:00:00
suse
suse
Security update for apache2-mod_auth_openidc (moderate)
2021-09-13 00:00:00
Security update for apache2-mod_auth_openidc (moderate)
2021-09-16 00:00:00
mageia
mageia
Updated apache-mod_auth_openidc packages fix security vulnerability
2021-10-02 21:57:04
debian
debian
[SECURITY] [DLA 3409-1] libapache2-mod-auth-openidc security update
2023-04-30 21:14:15
[SECURITY] [DLA 3499-1] libapache2-mod-auth-openidc security update
2023-07-18 22:51:29
f5
f5
K41454238 : Apache mod_auth_openidc vulnerabilities CVE-2021-32785 CVE-2021-32786 CVE-2021-32792
2022-10-25 00:00:00
cvelist
cvelist
4
CVE-2021-32791 Hardcoded static IV and AAD with a reused key in AES GCM encryption in mod_auth_openidc
2021-07-26 00:00:00
CVE-2021-39191 URL Redirection to Untrusted Site ('Open Redirect') in mod_auth_openidc
2021-09-03 00:00:00
CVE-2021-32786 Open Redirect in oidc_validate_redirect_url()
2021-07-22 00:00:00
ubuntucve
ubuntucve
4
CVE-2021-32791
2021-07-26 00:00:00
CVE-2021-32786
2021-07-22 00:00:00
CVE-2021-39191
2021-09-03 00:00:00
prion
prion
4
Authentication flaw
2021-07-26 17:15:00
Open redirect
2021-07-22 22:15:00
Open redirect
2021-09-03 14:15:00
debiancve
debiancve
4
CVE-2021-32791
2021-07-26 17:15:08
CVE-2021-39191
2021-09-03 14:15:07
CVE-2021-32786
2021-07-22 22:15:08
nvd
nvd
4
CVE-2021-32786
2021-07-22 22:15:08
CVE-2021-32791
2021-07-26 17:15:08
CVE-2021-39191
2021-09-03 14:15:07
redhatcve
redhatcve
4
CVE-2021-39191
2021-09-06 17:22:35
CVE-2021-32791
2021-07-27 13:20:37
CVE-2021-32786
2021-07-26 17:31:03
cve
cve
4
CVE-2021-39191
2021-09-03 14:15:07
CVE-2021-32791
2021-07-26 17:15:08
CVE-2021-32786
2021-07-22 22:15:08
veracode
veracode
4
Insecure Cryptographic Function
2021-08-06 08:24:48
Open Redirect
2021-09-08 13:57:09
Privilege Escalation
2021-08-06 08:24:43
cbl_mariner
cbl_mariner
4
CVE-2021-39191 affecting package mod_auth_openidc for versions less than 2.4.14.2-1
2023-09-28 12:35:58
CVE-2021-32791 affecting package httpd for versions less than 2.4.52-1
2022-04-09 06:51:57
CVE-2021-32786 affecting package httpd for versions less than 2.4.52-1
2022-04-09 06:51:57
rosalinux
rosalinux
Advisory ROSA-SA-2024-2362
2024-02-27 09:20:02
oracle
oracle
Oracle Critical Patch Update Advisory - April 2022
2022-04-19 00:00:00
0.002 Low
EPSS
Percentile
61.3%
JSON
Related for ELSA-2022-1823
osv
8
rocky
1
almalinux
1
redhat
1
nessus
16
fedora
4
openvas
12
suse
2
mageia
1
debian
2
f5
1
cvelist
4
ubuntucve
4
prion
4
debiancve
4
nvd
4
redhatcve
4
cve
4
veracode
4
cbl_mariner
4
rosalinux
1
oracle
1