vulnerability

Red Hat: CVE-2021-28091: CVE-2021-28091 lasso: XML signature wrapping vulnerability when parsing SAML responses (Multiple Advisories)

Severity
5
CVSS
(AV:N/AC:L/Au:N/C:N/I:P/A:N)
Published
2021-06-04
Added
2021-08-03
Modified
2024-11-26

Description

Lasso all versions prior to 2.7.0 has improper verification of a cryptographic signature.

Solution(s)

redhat-upgrade-java-lasso-debuginforedhat-upgrade-lassoredhat-upgrade-lasso-debuginforedhat-upgrade-lasso-debugsourceredhat-upgrade-lasso-develredhat-upgrade-lasso-pythonredhat-upgrade-perl-lasso-debuginforedhat-upgrade-python3-lasso-debuginfo
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.