mod_auth_mellon - A SAML 2.0 authentication module for the Apache Httpd Server

License: GPLv2+
Vendor: Scientific Linux
The mod_auth_mellon module is an authentication service that implements the
SAML 2.0 federation protocol. It grants access based on the attributes
received in assertions generated by a IdP server.


mod_auth_mellon-0.14.0-8.el7.x86_64 [1.2 MiB] Changelog by Jakub Hrozek (2019-10-09):
- Resolves: rhbz#1731052 - CVE-2019-13038 mod_auth_mellon: an Open Redirect via
                           the login?ReturnTo= substring which could facilitate
                           information theft [rhel-7]
mod_auth_mellon-0.14.0-2.el7_6.4.x86_64 [1.2 MiB] Changelog by Jakub Hrozek (2019-04-08):
- Actually apply the patch in the previous build
- Resolves: rhbz#1697488 - CVE-2019-3877 mod_auth_mellon: open redirect
                           in logout url when using URLs with backslashes

