Shibboleth Service Provider 3.x before 3.2.2 is prone to a NULL pointer dereference flaw involving the session recovery feature. The flaw is exploitable (for a daemon crash) on systems not using this feature if a crafted cookie is supplied.
A NULL pointer dereference occurs when the application dereferences a pointer that it expects to be valid, but is NULL, typically causing a crash or exit.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Service_provider | Shibboleth | 3.0.0 (including) | 3.2.2 (excluding) |
Shibboleth-sp | Ubuntu | focal | * |
Shibboleth-sp | Ubuntu | groovy | * |
Shibboleth-sp | Ubuntu | hirsute | * |
Shibboleth-sp | Ubuntu | trusty | * |
Shibboleth-sp | Ubuntu | upstream | * |