libapache2-mod-auth-mellon 0.12.0-2+deb9u1build0.16.04.1 source package in Ubuntu

Changelog

libapache2-mod-auth-mellon (0.12.0-2+deb9u1build0.16.04.1) xenial-security; urgency=medium

  * fake sync from Debian

libapache2-mod-auth-mellon (0.12.0-2+deb9u1) stretch-security; urgency=high

  * Upload to stable-security (closes: #925197)
    - Auth bypass when used with reverse proxy [CVE-2019-3878]
    - Open redirect vulnerability in logout [CVE-2019-3877]

libapache2-mod-auth-mellon (0.12.0-2) unstable; urgency=high

  * Backport upstream patches for security issues:
    - Fix a denial of service attack in the logout handler.
    - Fix a cross-site session transfer vulnerability [CVE-2017-6807].

 -- Eduardo Barretto <email address hidden>  Wed, 21 Oct 2020 16:38:13 -0300

Upload details

Uploaded by:
Eduardo Barretto
Uploaded to:
Xenial
Original maintainer:
Thijs Kinkhorst
Architectures:
any
Section:
web
Urgency:
Very Urgent

See full publishing history Publishing

Series Pocket Published Component Section
Xenial updates universe misc
Xenial security universe misc

Downloads

File Size SHA-256 Checksum
libapache2-mod-auth-mellon_0.12.0.orig.tar.gz 133.5 KiB 981c225ee97a3c11abb0237158c5c0c9b1248031adb195ae61b0a70d5d740ff1
libapache2-mod-auth-mellon_0.12.0-2+deb9u1build0.16.04.1.debian.tar.xz 6.6 KiB 2169b887440a5599957b6fba596147a3017dc021780f3501e5977f3674965b15
libapache2-mod-auth-mellon_0.12.0-2+deb9u1build0.16.04.1.dsc 2.1 KiB 54671b6337521a7cc065ecdf6e048e524ffa0fecb8f10d8dfbf66b4288a7ca13

View changes file

Binary packages built by this source

libapache2-mod-auth-mellon: SAML 2.0 authentication module for Apache

 mod-auth-mellon is an Apache module which enables you to authenticate
 users of a web site against a SAML 2.0 enabled IdP. It can grant
 access to paths and provide attributes to other modules and applications.

libapache2-mod-auth-mellon-dbgsym: debug symbols for package libapache2-mod-auth-mellon

 mod-auth-mellon is an Apache module which enables you to authenticate
 users of a web site against a SAML 2.0 enabled IdP. It can grant
 access to paths and provide attributes to other modules and applications.