[ Все 3 A B C D E F G H I J K L M N O P Q R S T U V W X Y Z ]
×

Пакет mod_auth_openidc-2.4.9.4-8.module+el8.10.0+636+ce72ae58.x86_64 download

Имя mod_auth_openidc
Эпоха 0
Версия 2.4.9.4
Релиз 8.module+el8.10.0+636+ce72ae58
Архитектура x86_64
Сайт https://github.com/zmartzone/mod_auth_openidc
Лицензия ASL 2.0
Время сборки 2025-05-09 22:01:28
Хост сборки builder-x86-04.inferitos.ru
Краткое описание OpenID Connect auth module for Apache HTTP Server
Репозитории AppStream
Полное описание This module enables an Apache 2.x web server to operate as an OpenID Connect Relying Party and/or OAuth 2.0 Resource Server.
Эррата INFSA-2025:4597
Размер 197 КиБ
Исходный проект mod_auth_openidc-2.4.9.4-8.module+el8.10.0+636+ce72ae58
Контрольная сумма SHA-256 e2baf6df977ed2b2b435991e1ab3ca3adf729534cbae2b10559c9d09bc7ae83c
Module mod_auth_openidc-2.3-8100020250509181511.acbbbf20
× Full screenshot
История изменений link
* Fri Apr 25 2025 Tomas Halman <thalman@redhat.com> - 2.4.9.4-8
- Resolves: RHEL-87759 - Empty POST causes crash with OIDCPreservePost

* Fri Apr 11 2025 Tomas Halman <thalman@redhat.com> - 2.4.9.4-7
- Resolves: RHEL-86218 - mod_auth_openidc allows OIDCProviderAuthRequestMethod
            POSTs to leak protected data (CVE-2025-31492)

* Fri Apr 12 2024 Tomas Halman <thalman@redhat.com> - 2.4.9.4-6
- Resolves: RHEL-36492 Race condition in mod_auth_openidc filecache
- Resolves: RHEL-25421 mod_auth_openidc: DoS when using
    `OIDCSessionType client-cookie` and manipulating cookies
    (CVE-2024-24814)

* Sun Dec 10 2023 MSVSphere Packaging Team <packager@msvsphere-os.ru> - 2.4.9.4-5
- Rebuilt for MSVSphere 8.8

* Tue Apr 25 2023 Tomas Halman <thalman@redhat.com> - 2.4.9.4-5
Related: rhbz#2141850 - fix cjose version dependency

* Mon Apr 24 2023 Tomas Halman <thalman@redhat.com> - 2.4.9.4-4
Resolves: rhbz#2141850 - auth_openidc.conf mode 0640 by default

* Tue Apr 11 2023 Tomas Halman <thalman@redhat.com> - 2.4.9.4-3
- Resolves: rhbz#2184144 - CVE-2023-28625 NULL pointer dereference
      when OIDCStripCookies is set and a crafted Cookie header is supplied

* Tue Feb 21 2023 Tomas Halman <thalman@redhat.com> - 2.4.9.4-2
- Resolves: rhbz#2153659 - CVE-2022-23527 - Open Redirect in
      oidc_validate_redirect_url() using tab character

* Fri Apr 08 2022 Tomas Halman <thalman@redhat.com> - 2.4.9.4-1
- Resolves: rhbz#2025368 - Rebase to new version

* Fri Jan 28 2022 Tomas Halman <thalman@redhat.com> - 2.3.7-11
- Resolves: rhbz#1987222 - CVE-2021-32792 XSS when using OIDCPreservePost On