QID 982072
QID 982072: Go (go) Security Update for github.com/russellhaering/gosaml2 (GHSA-gq5r-cc4w-g8xf)
This affects all versions up to and including 0.6.0 of package github.com/russellhaering/gosaml2. There is a crash on nil-pointer dereference caused by sending malformed XML signatures.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-gq5r-cc4w-g8xf for updates pertaining to this vulnerability.
Vendor References
- GHSA-gq5r-cc4w-g8xf -
github.com/advisories/GHSA-gq5r-cc4w-g8xf
CVEs related to QID 982072
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-gq5r-cc4w-g8xf | github.com/russellhaering/gosaml2 |
|