CVE-2011-1411: OpenSAML library vulnerable to XML Signature wrapping attacks

gprestia gregoriogianluca.prestia at amadeus.com
Thu Jan 10 05:45:24 EST 2013


Thanks for your responses! I now have another related question.

I was trying to access the SVN system anonymously to retrieve the whole
opensaml project, but I'm having the following access issue:

> svn co svn://svn.shibboleth.net/view/java-opensaml2/

svn: E730061: Unable to connect to a repository at URL
'svn://svn.shibboleth.net/view/java-opensaml2'
svn: E730061: Can't connect to host 'svn.shibboleth.net': No connection
could be made because the target machine actively refused it.

I'm not particularly into SVN, but I guess my checkout command is wrong? Or
is anonymous access really not allowed? What is the standard way to download
opensaml source code in such case?
Rgds
GP



--
View this message in context: http://shibboleth.1660669.n2.nabble.com/CVE-2011-1411-OpenSAML-library-vulnerable-to-XML-Signature-wrapping-attacks-tp6618773p7583957.html
Sent from the Shibboleth - Developers mailing list archive at Nabble.com.


More information about the dev mailing list