[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248268

 
 

909

 
 

195051

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

RHSA-2016:2809-01 -- Redhat ipsilon

ID: oval:org.secpod.oval:def:501938Date: (C)2016-11-23   (M)2023-11-13
Class: PATCHFamily: unix




The ipsilon packages provide the Ipsilon identity provider service for federated single sign-on . Ipsilon links authentication providers and applications or utilities to allow for SSO. It includes a server and utilities to configure Apache-based service providers. Security Fix: * A vulnerability was found in ipsilon in the SAML2 provider"s handling of sessions. An attacker able to hit the logout URL could determine what service providers other users are logged in to and terminate their sessions. This issue was discovered by Patrick Uiterwijk and Howard Johnson.

Platform:
Red Hat Enterprise Linux 7
Product:
ipsilon
Reference:
RHSA-2016:2809-01
CVE-2016-8638
CVE    1
CVE-2016-8638
CPE    1
cpe:/o:redhat:enterprise_linux:7

© SecPod Technologies