Follow @Openwall on Twitter for new release announcements and other news
[<prev] [next>] [day] [month] [year] [list]
Message-ID: <CAB8XdGAFWtCvHAhRv0mWNf7weY_Q1ogdF_F14+m+AGr75WsiLQ@mail.gmail.com>
Date: Thu, 8 Sep 2016 18:43:47 +0100
From: Colm O hEigeartaigh <coheigea@...che.org>
To: "users@....apache.org" <users@....apache.org>, "dev@....apache.org" <dev@....apache.org>
Cc: Apache Security Response Team <security@...che.org>, oss-security@...ts.openwall.com, 
	bugtraq@...urityfocus.com
Subject: New security advisory for Apache CXF Fediz - CVE-2016-4464

A new security advisory has been released for Apache CXF Fediz:

CVE-2016-4464: Apache CXF Fediz application plugins do not match the SAML
AudienceRestriction values against the list of configured audience URIs.

http://cxf.apache.org/security-advisories.data/CVE-2016-4464.txt.asc?version=1&modificationDate=1473350153000&api=v2


-- 
Colm O hEigeartaigh

Talend Community Coder
http://coders.talend.com

Powered by blists - more mailing lists

Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.

Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.