mod_auth_openidc: Open redirect in logout url when using URLs with leading slashes
Published Nov 26, 2019
6.1
MEDIUMCVSS 3.1
EPSS 1.60%
Description
A flaw was found in mod_auth_openidc before version 2.4.0.1. An open redirect issue exists in URLs with trailing slashes similar to CVE-2019-3877 in mod_auth_mellon.
Affected products
- Vendor n/a Product Mod Auth Openidc Defaultn/a
- Version 2.4.0.1StatusaffectedConstraints-
- Version
Default status is the baseline for the product, each version can override it (e.g. patched versions marked unaffected).
| Vendor | Product | Default status | Versions | ||||||
|---|---|---|---|---|---|---|---|---|---|
| n/a | Mod Auth Openidc | n/a |
|
- < 2.4.0.1
No data.
Red Hat Enterprise Linux 7
mod_auth_openidc-0:1.8.8-7.el7
Fixed · RHSA-2020:3970
Red Hat Enterprise Linux 8
mod_auth_openidc:2.3-8020020200604180605.4cda2c84
Fixed · RHSA-2020:3032
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 7 | mod_auth_openidc-0:1.8.8-7.el7 | Fixed | RHSA-2020:3970 |
| Red Hat Enterprise Linux 8 | mod_auth_openidc:2.3-8020020200604180605.4cda2c84 | Fixed | RHSA-2020:3032 |
No package ranges for this CVE.
Remediation
Red Hat statement
It is not possible to reproduce the open redirect vulnerability in the versions of mod_auth_openidc as shipped in Red Hat Enterprise Linux 7, as a missing check makes the process crash, due to a NULL pointer dereference, instead of letting it continue with an invalid URL.
References (10)
- https://access.redhat.com/security/cve/CVE-2019-14857 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=1760613 Issue Tracking
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2019-14857 x_refsource_MISCIssue TrackingPatchThird Party Advisory
- https://github.com/zmartzone/mod_auth_openidc/commit/5c15dfb08106c2451c2c44ce7ace6813c216ba75 x_refsource_CONFIRMPatchThird Party Advisory
- https://github.com/zmartzone/mod_auth_openidc/commit/ce37080c6aea30aabae8b4a9b4eea7808445cc8e x_refsource_CONFIRMPatchThird Party Advisory
- https://github.com/zmartzone/mod_auth_openidc/pull/451 x_refsource_CONFIRMPatchThird Party Advisory
- https://groups.google.com/forum/#%21topic/mod_auth_openidc/boy1Ba3Gdk4 x_refsource_CONFIRM
- https://lists.debian.org/debian-lts-announce/2020/07/msg00028.html mailing-listx_refsource_MLIST
- https://nvd.nist.gov/vuln/detail/CVE-2019-14857
- https://www.cve.org/CVERecord?id=CVE-2019-14857
| Link | Providers | Tags |
|---|---|---|
| https://access.redhat.com/security/cve/CVE-2019-14857 | Vendor Advisory | |
| https://bugzilla.redhat.com/show_bug.cgi?id=1760613 | Issue Tracking | |
| https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2019-14857 | x_refsource_MISCIssue TrackingPatchThird Party Advisory | |
| https://github.com/zmartzone/mod_auth_openidc/commit/5c15dfb08106c2451c2c44ce7ace6813c216ba75 | x_refsource_CONFIRMPatchThird Party Advisory | |
| https://github.com/zmartzone/mod_auth_openidc/commit/ce37080c6aea30aabae8b4a9b4eea7808445cc8e | x_refsource_CONFIRMPatchThird Party Advisory | |
| https://github.com/zmartzone/mod_auth_openidc/pull/451 | x_refsource_CONFIRMPatchThird Party Advisory | |
| https://groups.google.com/forum/#%21topic/mod_auth_openidc/boy1Ba3Gdk4 | x_refsource_CONFIRM | |
| https://lists.debian.org/debian-lts-announce/2020/07/msg00028.html | mailing-listx_refsource_MLIST | |
| https://nvd.nist.gov/vuln/detail/CVE-2019-14857 | ||
| https://www.cve.org/CVERecord?id=CVE-2019-14857 |
Change history (0)
No recorded changes yet.