Toni Huttunen and Fraktal Oy discovered that the Shibboleth Service provider allowed content injection due to allowing attacker-controlled parameters in error or other status pages. An attacker could use this to inject malicious content.
{ "availability": "No subscription required", "binaries": [ { "binary_name": "libapache2-mod-shib", "binary_version": "3.0.4+dfsg1-1ubuntu0.1" }, { "binary_name": "libapache2-mod-shib-dbgsym", "binary_version": "3.0.4+dfsg1-1ubuntu0.1" }, { "binary_name": "libapache2-mod-shib2", "binary_version": "3.0.4+dfsg1-1ubuntu0.1" }, { "binary_name": "libshibsp-dev", "binary_version": "3.0.4+dfsg1-1ubuntu0.1" }, { "binary_name": "libshibsp-doc", "binary_version": "3.0.4+dfsg1-1ubuntu0.1" }, { "binary_name": "libshibsp-plugins", "binary_version": "3.0.4+dfsg1-1ubuntu0.1" }, { "binary_name": "libshibsp-plugins-dbgsym", "binary_version": "3.0.4+dfsg1-1ubuntu0.1" }, { "binary_name": "libshibsp8", "binary_version": "3.0.4+dfsg1-1ubuntu0.1" }, { "binary_name": "libshibsp8-dbgsym", "binary_version": "3.0.4+dfsg1-1ubuntu0.1" }, { "binary_name": "shibboleth-sp-common", "binary_version": "3.0.4+dfsg1-1ubuntu0.1" }, { "binary_name": "shibboleth-sp-utils", "binary_version": "3.0.4+dfsg1-1ubuntu0.1" }, { "binary_name": "shibboleth-sp-utils-dbgsym", "binary_version": "3.0.4+dfsg1-1ubuntu0.1" }, { "binary_name": "shibboleth-sp2-common", "binary_version": "3.0.4+dfsg1-1ubuntu0.1" }, { "binary_name": "shibboleth-sp2-utils", "binary_version": "3.0.4+dfsg1-1ubuntu0.1" } ] }