CVE-2011-4625: High severity SimpleSAMLphp SimpleSAMLphp vulnerability
simplesamlphp before 1.6.3 (squeeze) and before 1.8.2 (sid) incorrectly handles XML encryption which could allow remote attackers to decrypt or forge messages.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2011-4625?
CVE-2011-4625 is a vulnerability in simplesamlphp before 1.6.3 (squeeze) and before 1.8.2 (sid) that incorrectly handles XML encryption, allowing remote attackers to decrypt or forge messages.
How does CVE-2011-4625 impact me?
CVE-2011-4625 can allow remote attackers to decrypt or forge messages by exploiting the vulnerability in simplesamlphp.
What is the severity of CVE-2011-4625?
The severity of CVE-2011-4625 is high, with a severity value of 7.5.
How do I fix CVE-2011-4625?
To fix CVE-2011-4625, you need to update simplesamlphp to a version that includes the necessary security patches, such as version 1.6.3 (squeeze) or version 1.8.2 (sid) or later.
Where can I find more information about CVE-2011-4625?
You can find more information about CVE-2011-4625 in the Debian Security Tracker and on Mageni's website.