Ubuntu Security Update USN-4597-1: mod_auth_mellon vulnerabilities

LinuxBot

Member
Joined
Apr 25, 2017
Messages
5,907
Reaction score
75
Credits
-1,257
François Kooman discovered that mod_auth_mellon incorrectly handled cookies. An attacker could possibly use this issue to cause a Cross-Site Session Transfer attack. (CVE-2017-6807) It was discovered that mod_auth_mellon incorrectly handled certain requests. An attacker could possibly use this issue to redirect a user to a malicious URL. (CVE-2019-3877) It was discovered that mod_auth_mellon incorrectly handled certain requests. An attacker could possibly use this issue to access sensitive information. (CVE-2019-3878)

Continue reading...
 


Follow Linux.org

Members online

No members online now.

Latest posts

Top