MGASA-2014-0557
Vulnerability Summary
Timeline
Description
Updated cxf packages fix security vulnerabilities Updated cxf packages fix security vulnerabilities: An Apache CXF JAX-RS service can process SAML tokens received in the authorization header of a request via the SamlHeaderInHandler. However it is possible to cause an infinite loop in the parsing of this header by passing certain bad values for the header, leading to a Denial of Service attack on the service (CVE-2014-3584). Apache CXF is vulnerable to a possible SSL hostname verification bypass, due to a flaw in comparing the server hostname to the domain name in the Subject's DN field. A Man In The Middle attack can exploit this vulnerability by using a specially crafted Subject DN to spoof a valid certificate (CVE-2014-3577).
Affected Systems
- mageia•cxf
< 2.7.5-3.1.mga4
References (6)
- https://advisories.mageia.org/MGASA-2014-0557.html
- https://bugs.mageia.org/show_bug.cgi?id=14363
- http://cxf.apache.org/security-advisories.data/CVE-2014-3584.txt.asc
- http://cxf.apache.org/security-advisories.data/CVE-2014-3577.txt.asc
- https://bugzilla.redhat.com/show_bug.cgi?id=1157330
- https://bugzilla.redhat.com/show_bug.cgi?id=1129074