| Name | CVE-2022-36179 |
| Description | Fusiondirectory 1.3 suffers from Improper Session Handling. |
| Source | CVE (at NVD; CERT, ENISA, LWN, oss-sec, fulldisc, Debian ELTS, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more) |
| References | DLA-3487-1 |
The information below is based on the following data on fixed versions.
| Package | Type | Release | Fixed Version | Urgency | Origin | Debian Bugs |
|---|---|---|---|---|---|---|
| fusiondirectory | source | buster | 1.2.3-4+deb10u2 | DLA-3487-1 | ||
| fusiondirectory | source | bullseye | 1.3-4+deb11u1 | |||
| fusiondirectory | source | (unstable) | (unfixed) |
https://yoroi.company/research/cve-advisory-full-disclosure-multiple-vulnerabilities/
https://github.com/fusiondirectory/fusiondirectory/commit/d84cf05573b52df98418adf3716daf365e8da745 (fusiondirectory-1.3.1)