summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorSteve Wills <swills@FreeBSD.org>2011-07-26 02:12:47 +0000
committerSteve Wills <swills@FreeBSD.org>2011-07-26 02:12:47 +0000
commit05bbaae201b92494377bf2a4ecf5c9a991e3f4c4 (patch)
treedec122442cd3bde7e6ef4a32aa40ceaf07b77b9d
parentUpdate to 2.8.4 and use the ports framework to (diff)
- Add CVE reference for OpenSAML2 issue
- Use official citation
Notes
Notes: svn path=/head/; revision=278343
-rw-r--r--security/vuxml/vuln.xml3
1 files changed, 2 insertions, 1 deletions
diff --git a/security/vuxml/vuln.xml b/security/vuxml/vuln.xml
index 362649801160..bc721cbe506f 100644
--- a/security/vuxml/vuln.xml
+++ b/security/vuxml/vuln.xml
@@ -91,7 +91,7 @@ Note: Please add new entries to the beginning of this file.
<description>
<body xmlns="http://www.w3.org/1999/xhtml">
<p>OpenSAML developer reports:</p>
- <blockquote cite="https://groups.google.com/a/shibboleth.net/group/announce/browse_thread/thread/cf3e0d76afbb57d9">
+ <blockquote cite="http://shibboleth.internet2.edu/secadv/secadv_20110725.txt">
<p>The Shibboleth software relies on the OpenSAML libraries to perform
verification of signed XML messages such as attribute queries or
SAML assertions. Both the Java and C++ versions are vulnerable to a
@@ -102,6 +102,7 @@ Note: Please add new entries to the beginning of this file.
</body>
</description>
<references>
+ <cvename>CVE-2011-1411</cvename>
<mlist msgid="CA530061.113D6%cantor.2@osu.edu">https://groups.google.com/a/shibboleth.net/group/announce/browse_thread/thread/cf3e0d76afbb57d9</mlist>
</references>
<dates>