Description
SimpleSAMLphp xml-common is a common classes for handling XML-structures. When loading an (untrusted) XML document, for example the SAMLResponse, it's possible to induce an XXE. This vulnerability is fixed in 1.19.0.
Mitigation
Minimal update. May introduce new vulnerabilities or breaking changes.
|
 debian 12 | | =1.19.7-1 || >=0 <1.19.7-1+deb12u1 | 1.19.7-1+deb12u1 |
 debian 11 | | =1.19.0-1 || >=0 <1.19.0-1+deb11u1 | 1.19.0-1+deb11u1 |
 packagist | | | 1.10.0 |
 packagist | | | 1.20.0 |
 packagist | | | 4.6.14 |
 packagist | | | 4.6.14 |
 debian 14 | | =1.10.0-1 || =1.11.0-1 || =1.12.0-1 || =1.12.0~rc1-1 || =1.12.0~rc2-1 || =1.13.0-1 || =1.13.1-1 || =1.13.1-2 || =1.13.2-1 || =1.14.0-1 || =1.14.1-1 || =1.14.10-1 || =1.14.11-1 || =1.14.15-1 || =1.14.2-1 || =1.14.2-2 || =1.14.3-1 || =1.14.4-1 || =1.14.5-1 || =1.14.6-1 || =1.14.7-1 || =1.14.8-1 || =1.14.9-1 || =1.15.0-1 || =1.15.1-1 || =1.15.2-1 || =1.15.3-1 || =1.15.4-1 || =1.16.0-1 || =1.16.1-1 || =1.16.2-1 || =1.16.3-1 || =1.17.0-1 || =1.17.1-1 || =1.17.2-1 || =1.17.2-2 || =1.17.3-1 || =1.17.4-1 || =1.17.5-1 || =1.17.6-1 || =1.17.6-2 || =1.18.1-1 || =1.18.4-1 || =1.18.5-1 || =1.18.6-1 || =1.18.7-1 || =1.18.8-1 || =1.19.0-1 || =1.19.1-1 || =1.19.1-1.1 || =1.19.6-1 || =1.19.7-1 || =1.6.0-1 || =1.6.1-1 || =1.6.2-1 || =1.6.3-1 || =1.6.3-2 || =1.6.3-3 || =1.7.0-1 || =1.7.0-2 || =1.8.0-1 || =1.8.1-1 || =1.8.2-1 || =1.9.0-1 || =1.9.0~rc1-1 || =1.9.0~rc2-1 || =1.9.1-1 || =1.9.2-1 || >=0 <1.19.7-1+deb12u1 | 1.19.7-1+deb12u1 |