ELSA-2019-2112

ELSA-2019-2112 - mod_auth_openidc security update

Type:SECURITY
Impact:MODERATE
Release Date:2019-08-13

Description


[1.8.8-5]
- Resolves: rhbz#1626297 - CVE-2017-6413 mod_auth_openidc: OIDC_CLAIM and
OIDCAuthNHeader not skipped in an 'AuthType oauth20'
configuration [rhel-7]

[1.8.8-4]
- Resolves: rhbz#1626299 - CVE-2017-6059 mod_auth_openidc: Shows
user-supplied content on error pages [rhel-7]


Related CVEs


CVE-2017-6059
CVE-2017-6413

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 7 (aarch64) mod_auth_openidc-1.8.8-5.el7.src.rpm56cc93ec27dbe3a2ceaeb17c6a736b1143b496854a8e0b5c652fe50a26160ca7ELBA-2020-5035ol7_aarch64_latest
mod_auth_openidc-1.8.8-5.el7.src.rpm56cc93ec27dbe3a2ceaeb17c6a736b1143b496854a8e0b5c652fe50a26160ca7ELBA-2020-5035ol7_aarch64_u7_base
mod_auth_openidc-1.8.8-5.el7.src.rpm56cc93ec27dbe3a2ceaeb17c6a736b1143b496854a8e0b5c652fe50a26160ca7ELBA-2020-5035ol7_aarch64_u8_base
mod_auth_openidc-1.8.8-5.el7.aarch64.rpme02f5e5d2e75090d69f8d9b4a15ce892535d8a060c761b30ba600c6e4319a534ELBA-2020-5035ol7_aarch64_latest
mod_auth_openidc-1.8.8-5.el7.aarch64.rpme02f5e5d2e75090d69f8d9b4a15ce892535d8a060c761b30ba600c6e4319a534ELBA-2020-5035ol7_aarch64_u7_base
mod_auth_openidc-1.8.8-5.el7.aarch64.rpme02f5e5d2e75090d69f8d9b4a15ce892535d8a060c761b30ba600c6e4319a534ELBA-2020-5035ol7_aarch64_u8_base
Oracle Linux 7 (x86_64) mod_auth_openidc-1.8.8-5.el7.src.rpm56cc93ec27dbe3a2ceaeb17c6a736b1143b496854a8e0b5c652fe50a26160ca7ELBA-2020-5035ol7_x86_64_latest
mod_auth_openidc-1.8.8-5.el7.src.rpm56cc93ec27dbe3a2ceaeb17c6a736b1143b496854a8e0b5c652fe50a26160ca7ELBA-2020-5035ol7_x86_64_u7_base
mod_auth_openidc-1.8.8-5.el7.src.rpm56cc93ec27dbe3a2ceaeb17c6a736b1143b496854a8e0b5c652fe50a26160ca7ELBA-2020-5035ol7_x86_64_u8_base
mod_auth_openidc-1.8.8-5.el7.x86_64.rpmccb6deb892bcbb2e4e35fb3747fe9209ff5cc78b164a37bc8dcdb5e7c937f34cELBA-2020-5035ol7_x86_64_latest
mod_auth_openidc-1.8.8-5.el7.x86_64.rpmccb6deb892bcbb2e4e35fb3747fe9209ff5cc78b164a37bc8dcdb5e7c937f34cELBA-2020-5035ol7_x86_64_u7_base
mod_auth_openidc-1.8.8-5.el7.x86_64.rpmccb6deb892bcbb2e4e35fb3747fe9209ff5cc78b164a37bc8dcdb5e7c937f34cELBA-2020-5035ol7_x86_64_u8_base



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete