stable

CVE-2023-28625 mod_auth_openidc: NULL pointer dereference

FEDORA-2023-b534ca7056 created by thalman 2 years ago for Fedora 38

Rebase to 2.4.13.2 version, fix CVE-2023-28625

How to install

Updates may require up to 24 hours to propagate to mirrors. If the following command doesn't work, please retry later:

sudo dnf upgrade --refresh --advisory=FEDORA-2023-b534ca7056

This update has been submitted for testing by thalman.

2 years ago

This update's test gating status has been changed to 'ignored'.

2 years ago

This update has been pushed to testing.

2 years ago

This update has been submitted for stable by bodhi.

2 years ago

This update has been pushed to stable.

2 years ago

Please log in to add feedback.

Metadata
Type
security
Severity
medium
Karma
0
Signed
Content Type
RPM
Test Gating
Autopush Settings
Unstable by Karma
-3
Stable by Karma
3
Stable by Time
7 days
Dates
submitted
2 years ago
in testing
2 years ago
in stable
2 years ago
approved
2 years ago
BZ#2184118 CVE-2023-28625 mod_auth_openidc: NULL pointer dereference when OIDCStripCookies is set and a crafted Cookie header is supplied
0
0
BZ#2184119 CVE-2023-28625 mod_auth_openidc: NULL pointer dereference when `OIDCStripCookies` is set and a crafted cookie supplied [fedora-all]
0
0

Automated Test Results