USN-3402-1: PySAML2 vulnerability
24 August 2017
The system could be made to expose sensitive information.
Releases
Packages
- python-pysaml2 - Pure python implementation of SAML2
Details
It was discovered that PySAML2 incorrectly handled certain
SAML XML requests and responses. A remote attacker could use
this issue to read arbitrary files.
Update instructions
The problem can be corrected by updating your system to the following package versions:
Ubuntu 17.04
Ubuntu 16.04
In general, a standard system update will make all the necessary changes.