Опубликовано: 11 фев. 2024
Источник: github
Github: Прошло ревью
CVSS4: 9.3
CVSS3: 9.1
Описание
Samly access control vulnerability
In the Samly package before 1.4.0 for Elixir, Samly.State.Store.get_assertion/3 can return an expired session, which interferes with access control because Samly.AuthHandler uses a cached session and does not replace it, even after expiry.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2024-25718
- https://github.com/dropbox/samly/pull/13
- https://github.com/dropbox/samly/pull/13/commits/812b5c3ad076dc9c9334c1a560c8e6470607d1eb
- https://github.com/dropbox/samly/commit/7637ebeef6c6b88ec2032f5323c32edcebbacbc6
- https://diff.hex.pm/diff/samly/1.3.0..1.4.0
- https://github.com/handnot2/samly
- https://hex.pm/packages/samly
Пакеты
Наименование
Samly
Затронутые версииВерсия исправления
< 1.4.0
1.4.0
EPSS
Процентиль: 31%
0.00114
Низкий
9.3 Critical
CVSS4
9.1 Critical
CVSS3
CVE ID
Дефекты
CWE-400
CWE-613
Связанные уязвимости
CVSS3: 9.8
nvd
почти 2 года назад
In the Samly package before 1.4.0 for Elixir, Samly.State.Store.get_assertion/3 can return an expired session, which interferes with access control because Samly.AuthHandler uses a cached session and does not replace it, even after expiry.
EPSS
Процентиль: 31%
0.00114
Низкий
9.3 Critical
CVSS4
9.1 Critical
CVSS3
CVE ID
Дефекты
CWE-400
CWE-613