Commit Graph

17 Commits

Author SHA1 Message Date
Tomas Halman
72bec876c1 The access mode and ownership of auth_openidc.conf
Resolves: rhbz#2189268 - auth_openidc.conf mode 0640 by default
2023-04-24 21:10:45 +02:00
Tomas Halman
d3c3826f5b NULL pointer dereference
Resolves: rhbz#2184145 - CVE-2023-28625 NULL pointer dereference
                         when OIDCStripCookies is set and a crafted
                         Cookie header is supplied
2023-04-11 11:57:17 +02:00
Tomas Halman
e2c71eebbd Open Redirect using tab character
Resolves: rhbz#2153656 - CVE-2022-23527 - Open Redirect in
          oidc_validate_redirect_url() using tab character
2023-03-10 11:01:26 +01:00
Tomas Halman
b2f5928aaf Rebase to 2.4.9.4
Resolves: rhbz#2001852 CVE-2021-39191 mod_auth_openidc: open redirect
                       by supplying a crafted URL in the target_link_uri
                       parameter
2021-11-30 11:17:56 +01:00
Jakub Hrozek
bb118db4de Rebase to 2.4.9
Resolves: rhbz#1987223 - CVE-2021-32792 mod_auth_openidc: XSS when using
                           OIDCPreservePost On [rhel-9.0]
Resolves: rhbz#1987217 - CVE-2021-32791 mod_auth_openidc: hardcoded
                           static IV and AAD with a reused key in AES GCM
                           encryption [rhel-9.0]
Resolves: rhbz#1987204 - CVE-2021-32786 mod_auth_openidc: open redirect in
                           oidc_validate_redirect_url() [rhel-9.0]
2021-08-18 13:53:34 +02:00
Mohan Boddu
2471b534cd Rebuilt for IMA sigs, glibc 2.34, aarch64 flags
Related: rhbz#1991688
Signed-off-by: Mohan Boddu <mboddu@redhat.com>
2021-08-09 22:20:05 +00:00
Scott Poore
21e4b53731 Fix git repo used to pull gating tests
Resolves: rhbz#1977083
2021-06-29 07:44:24 -05:00
Scott Poore
6158035a74 Removing old gating script code.
Resolves: rhbz#1977083
2021-06-29 07:09:58 -05:00
Scott Poore
1408e06e1d Enable gating for RHEL9
Resolves: rhbz#1977083
2021-06-28 16:51:29 -05:00
Mohan Boddu
b3ee543e1b Rebuilt for RHEL 9 BETA for openssl 3.0
Related: rhbz#1971065
Signed-off-by: Mohan Boddu <mboddu@redhat.com>
2021-06-16 03:31:08 +00:00
Jakub Hrozek
2b73a00d38 New upstream release
mod_auth_openidc-2.4.8.2 is available
Resolves: rhbz#1961213
2021-05-17 17:09:30 +02:00
Tomas Halman
15f15a0efa Remove the unnecessary LTO patch
Resolves: rhbz#1951277
2021-05-04 11:38:03 +02:00
Mohan Boddu
41024c12ac - Rebuilt for RHEL 9 BETA on Apr 15th 2021. Related: rhbz#1947937
Signed-off-by: Mohan Boddu <mboddu@redhat.com>
2021-04-16 02:13:52 +00:00
DistroBaker
98bdcbe30e Merged update from upstream sources
This is an automated DistroBaker update from upstream sources.
If you do not know what this is about or would like to opt out,
contact the OSCI team.

Source: https://src.fedoraproject.org/rpms/mod_auth_openidc.git#5f2d016252774bc0efe44f7de9ea1366142f3f9c
2021-03-31 19:59:51 +00:00
DistroBaker
322a53ae4e Merged update from upstream sources
This is an automated DistroBaker update from upstream sources.
If you do not know what this is about or would like to opt out,
contact the OSCI team.

Source: https://src.fedoraproject.org/rpms/mod_auth_openidc.git#5f2d016252774bc0efe44f7de9ea1366142f3f9c
2021-02-09 16:49:16 +01:00
Petr Šabata
66a7041a6e RHEL 9.0.0 Alpha bootstrap
The content of this branch was automatically imported from Fedora ELN
with the following as its source:
https://src.fedoraproject.org/rpms/mod_auth_openidc#5f2d016252774bc0efe44f7de9ea1366142f3f9c
2020-10-15 19:52:44 +02:00
Release Configuration Management
3d9752e4c0 New branch setup 2020-10-08 18:14:10 +00:00