cxf-dev mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From Colm O hEigeartaigh <cohei...@apache.org>
Subject New security advisory for Apache CXF
Date Sat, 14 Nov 2015 15:32:32 GMT
A new security advisory has been released for Apache CXF:

CVE-2015-5253
<http://cxf.apache.org/security-advisories.data/CVE-2015-5253.txt.asc?version=1&modificationDate=1447433340000&api=v2>:
Apache CXF SAML SSO processing is vulnerable to a wrapping attack

Please update to the latest CXF versions if you are using SAML SSO. More
information on CXF security advisories at the following page:
http://cxf.apache.org/security-advisories.html

Colm.

-- 
Colm O hEigeartaigh

Talend Community Coder
http://coders.talend.com

Mime
  • Unnamed multipart/alternative (inline, None, 0 bytes)
View raw message