CVE-2011-1411: OpenSAML library vulnerable to XML Signature wrapping attacks

Ian Young ian at iay.org.uk
Mon Jan 14 08:47:19 EST 2013


On 14 Jan 2013, at 13:44, gprestia <gregoriogianluca.prestia at amadeus.com> wrote:

> Precisely, the following URLs return a 404, even if they appear to be public
> repositories and are declared in the POM:
> - https://shibboleth.net/nexus/content/groups/public
> - https://shibboleth.net/nexus/content/repositories/snapshots

These repositories are now at build.shibboleth.net, not at shibboleth.net.

	-- Ian



-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/pkcs7-signature
Size: 4813 bytes
Desc: not available
Url : http://shibboleth.net/pipermail/dev/attachments/20130114/a1ba1f8f/attachment.bin 


More information about the dev mailing list