| Revision Date: | 2017-02-16 | Version: | 1 | | Title: | CVE-2016-9814 on Ubuntu 18.04 LTS (bionic) - low. | | Description: | The validateSignature method in the SAML2\Utils class in SimpleSAMLphp before 1.14.10 and simplesamlphp/saml2 library before 1.9.1, 1.10.x before 1.10.3, and 2.x before 2.3.3 allows remote attackers to spoof SAML responses or possibly cause a denial of service (memory consumption) by leveraging improper conversion of return values to boolean.
| | Family: | unix | Class: | vulnerability | | Status: | | Reference(s): | CVE-2016-9814
| | Platform(s): | Ubuntu 18.04 LTS
| Product(s): | | | Definition Synopsis | | Ubuntu 18.04 LTS (bionic) is installed. AND NOT simplesamlphp package in bionic, while related to the CVE in some way, is not affected.
|
|