LemonLDAP::NG before 1.2.3 does not use the signature-verification capability of the Lasso library, which allows remote attackers to bypass intended access-control restrictions via crafted SAML data.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Lemonldap:: | Lemonldap-ng | * | 1.2.2 (including) |
Lemonldap:: | Lemonldap-ng | 0.6 (including) | 0.6 (including) |
Lemonldap:: | Lemonldap-ng | 0.7-beta (including) | 0.7-beta (including) |
Lemonldap:: | Lemonldap-ng | 0.8 (including) | 0.8 (including) |
Lemonldap:: | Lemonldap-ng | 0.8.1 (including) | 0.8.1 (including) |
Lemonldap:: | Lemonldap-ng | 0.8.2 (including) | 0.8.2 (including) |
Lemonldap:: | Lemonldap-ng | 0.8.3 (including) | 0.8.3 (including) |
Lemonldap:: | Lemonldap-ng | 0.9 (including) | 0.9 (including) |
Lemonldap:: | Lemonldap-ng | 0.9.1 (including) | 0.9.1 (including) |
Lemonldap:: | Lemonldap-ng | 0.9.2 (including) | 0.9.2 (including) |
Lemonldap:: | Lemonldap-ng | 0.9.3 (including) | 0.9.3 (including) |
Lemonldap:: | Lemonldap-ng | 0.9.4 (including) | 0.9.4 (including) |
Lemonldap:: | Lemonldap-ng | 1.0 (including) | 1.0 (including) |
Lemonldap:: | Lemonldap-ng | 1.0-rc1 (including) | 1.0-rc1 (including) |
Lemonldap:: | Lemonldap-ng | 1.0-rc2 (including) | 1.0-rc2 (including) |
Lemonldap:: | Lemonldap-ng | 1.0.1 (including) | 1.0.1 (including) |
Lemonldap:: | Lemonldap-ng | 1.0.2 (including) | 1.0.2 (including) |
Lemonldap:: | Lemonldap-ng | 1.0.3 (including) | 1.0.3 (including) |
Lemonldap:: | Lemonldap-ng | 1.0.4 (including) | 1.0.4 (including) |
Lemonldap:: | Lemonldap-ng | 1.0.5 (including) | 1.0.5 (including) |
Lemonldap:: | Lemonldap-ng | 1.0.6 (including) | 1.0.6 (including) |
Lemonldap:: | Lemonldap-ng | 1.1.0 (including) | 1.1.0 (including) |
Lemonldap:: | Lemonldap-ng | 1.1.1 (including) | 1.1.1 (including) |
Lemonldap:: | Lemonldap-ng | 1.1.2 (including) | 1.1.2 (including) |
Lemonldap:: | Lemonldap-ng | 1.2.0 (including) | 1.2.0 (including) |
Lemonldap:: | Lemonldap-ng | 1.2.1 (including) | 1.2.1 (including) |
Lemonldap-ng | Ubuntu | hardy | * |
Lemonldap-ng | Ubuntu | lucid | * |
Lemonldap-ng | Ubuntu | oneiric | * |
Lemonldap-ng | Ubuntu | precise | * |
Lemonldap-ng | Ubuntu | quantal | * |
Lemonldap-ng | Ubuntu | raring | * |
Lemonldap-ng | Ubuntu | upstream | * |