Ecosyste.ms: Advisories

An open API service providing security vulnerability metadata for many open source software ecosystems.

Security Advisories: GSA_kwCzR0hTQS1xNHEyLTkzcHctcXdnZs3t2g

Issuer validation regression in Spring Cloud SSO Connector

Spring Cloud SSO Connector, version 2.1.2, contains a regression which disables issuer validation in resource servers that are not bound to the SSO service. In PCF deployments with multiple SSO service plans, a remote attacker can authenticate to unbound resource servers which use this version of the SSO Connector with tokens generated from another service plan.

Mitigation

Users of affected versions should apply the following mitigation:

Permalink: https://github.com/advisories/GHSA-q4q2-93pw-qwgf
JSON: https://advisories.ecosyste.ms/api/v1/advisories/GSA_kwCzR0hTQS1xNHEyLTkzcHctcXdnZs3t2g
Source: GitHub Advisory Database
Origin: Unspecified
Severity: High
Classification: General
Published: almost 2 years ago
Updated: 2 months ago


CVSS Score: 8.1
CVSS vector: CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H

Identifiers: GHSA-q4q2-93pw-qwgf, CVE-2018-1256
References: Repository: https://github.com/pivotal-cf/spring-cloud-sso-connector
Blast Radius: 6.3

Affected Packages

maven:io.pivotal.spring.cloud:spring-cloud-sso-connector
Dependent packages: 5
Dependent repositories: 6
Downloads:
Affected Version Ranges: = 2.1.2.RELEASE
Fixed in: 2.1.3.RELEASE
All affected versions:
All unaffected versions: