File opensaml.changes of Package opensaml.38378
------------------------------------------------------------------- Thu Apr 17 13:38:30 UTC 2025 - Marius Grossu <marius.grossu@suse.com> - - Fix CVE-2025-31335, parameter manipulation allows the forging of signed SAML messages (CVE-2025-31335, bsc#1239889) * CVE-2025-31335.patch ------------------------------------------------------------------- Tue Nov 21 11:45:24 UTC 2017 - kstreitova@suse.com - add opensaml-2.5.5-CVE-2017-16853.patch to fix a critical security issue when the DynamicMetadataProvider class in saml/saml2/metadata/impl/DynamicMetadataProvider.cpp in OpenSAML-C in OpenSAML before 2.6.1 fails to properly configure itself with the MetadataFilter plugins and does not perform critical security checks [bsc#1068685] [CVE-2017-16853] ------------------------------------------------------------------- Tue Sep 8 08:34:46 UTC 2015 - kstreitova@suse.com - sync Apache:Shibboleth packages with SLE12SP1 [bnc#944796] ------------------------------------------------------------------- Wed Aug 5 18:14:58 UTC 2015 - mpluskal@suse.com - Add gpg signature ------------------------------------------------------------------- Tue Jul 28 09:29:22 UTC 2015 - kstreitova@suse.com - use spec-cleaner again - fix Source address - remove unused conditionals ------------------------------------------------------------------- Mon Jul 27 08:27:16 UTC 2015 - kstreitova@suse.com - use spec-cleaner - package cleaning - add opensaml-2.5.5-doxygen_timestamp.patch to remove timestamps in a documentation generated by Doxygen and avoid RPMLINT warnings (file-contains-date-and-time). ------------------------------------------------------------------- Fri Jul 24 15:09:10 UTC 2015 - kstreitova@suse.com - initial revision