CVE Vulnerabilities

CVE-2018-6519

Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')

Published: Feb 02, 2018 | Modified: Oct 03, 2018
CVSS 3.x
7.5
HIGH
Source:
NVD
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM

The SAML2 library before 1.10.4, 2.x before 2.3.5, and 3.x before 3.1.1 in SimpleSAMLphp has a Regular Expression Denial of Service vulnerability for fraction-of-seconds data in a timestamp.

Weakness

The product constructs all or part of a command, data structure, or record using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify how it is parsed or interpreted when it is sent to a downstream component.

Affected Software

Name Vendor Start Version End Version
Saml2 Simplesamlphp 1.0.0 (including) 1.10.4 (excluding)
Saml2 Simplesamlphp 2.0.0 (including) 2.3.5 (excluding)
Saml2 Simplesamlphp 3.0.0 (including) 3.1.1 (excluding)
Simplesamlphp Ubuntu artful *
Simplesamlphp Ubuntu esm-apps/xenial *
Simplesamlphp Ubuntu trusty *
Simplesamlphp Ubuntu upstream *
Simplesamlphp Ubuntu xenial *

Potential Mitigations

References