Sunday, March 17, 2013

[CVE-2012-6426] LemonLDAP-NG SAML XML Signature Wrapping


[CVE-2012-6426] LemonLDAP-NG SAML XML Signature Wrapping
_______________________________________________________________________
Summary:
LemonLDAP-NG <=1.2.2 is prone to a security vulnerability involving
XML signature wrapping in authentication process.

Successful exploits may allow unauthenticated attackers to construct
specially crafted messages that can be successfully verified and
contain arbitrary content.

This may lead to authentication bypass.
_______________________________________________________________________
Details:
Due to a bad use of Lasso library, SAML signatures are never checked,
even if SP forces signature check.
____________________________________________________________________
CVSS Version 2 Metrics:
Access Vector: Network exploitable
Access Complexity: Low
Authentication: Not required to exploit
Impact Type:Allows unauthorized disclosure of information; Allows
unauthorized modification
_______________________________________________________________________
Disclosure Timeline:
2012-11-08 Vendor contacted
2012-12-18 Vendor: fixed issue in svn r2698
2012-12-19 CVE-2012-6426 assigned
2012-12-20 Public advisory
2012-12-21 EoW
_______________________________________________________________________
References:
http://jira.ow2.org/browse/LEMONLDAP-570
_______________________________________________________________________

No comments:

Post a Comment