Ecosyste.ms: Advisories

An open API service providing security vulnerability metadata for many open source software ecosystems.

Security Advisories: GSA_kwCzR0hTQS1qMmpwLXd2cWctd2MyZ84AAwFN

crewjam/saml vulnerable to signature bypass via multiple Assertion elements due to improper authentication

Impact

The crewjam/saml go library is vulnerable to an authentication bypass when processing SAML responses containing multiple Assertion elements.

Patches

This issue has been corrected in version 0.4.9.

Credit

This issue was reported by Felix Wilhelm from Google Project Zero.

Permalink: https://github.com/advisories/GHSA-j2jp-wvqg-wc2g
JSON: https://advisories.ecosyste.ms/api/v1/advisories/GSA_kwCzR0hTQS1qMmpwLXd2cWctd2MyZ84AAwFN
Source: GitHub Advisory Database
Origin: Unspecified
Severity: Critical
Classification: General
Published: over 1 year ago
Updated: about 1 year ago


CVSS Score: 9.1
CVSS vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N

Identifiers: GHSA-j2jp-wvqg-wc2g, CVE-2022-41912
References: Repository: https://github.com/crewjam/saml
Blast Radius: 26.0

Affected Packages

go:github.com/crewjam/saml
Dependent packages: 207
Dependent repositories: 716
Downloads:
Affected Version Ranges: < 0.4.9
Fixed in: 0.4.9
All affected versions: 0.3.0, 0.3.1, 0.4.0, 0.4.1, 0.4.2, 0.4.3, 0.4.4, 0.4.5, 0.4.6, 0.4.7, 0.4.8
All unaffected versions: 0.4.9, 0.4.10, 0.4.11, 0.4.12, 0.4.13, 0.4.14