Advisories ยป MGASA-2024-0081

Updated apache-mod_auth_openidc packages fix security vulnerability

Publication date: 22 Mar 2024
Modification date: 21 Mar 2024
Type: security
Affected Mageia releases : 9
CVE: CVE-2024-24814

Description

Missing input validation on mod_auth_openidc_session_chunks cookie value
makes the server vulnerable to DoS attack. (CVE-2024-24814)
                

References

SRPMS

9/core