Name | TEMP-0000000-5C6A59 |
Description | session id exposed in portal AJAX responses |
Source | Automatically generated temporary name. Not for external reference. |
Vulnerable and fixed packages
The table below lists information on source packages.
Source Package | Release | Version | Status |
---|
lemonldap-ng (PTS) | bullseye | 2.0.11+ds-4+deb11u5 | vulnerable |
| bullseye (security) | 2.0.11+ds-4+deb11u7 | vulnerable |
| bookworm, bookworm (security) | 2.16.1+ds-deb12u6 | vulnerable |
| trixie | 2.21.2+ds-1 | vulnerable |
| forky, sid | 2.21.3+ds-1 | fixed |
The information below is based on the following data on fixed versions.
Package | Type | Release | Fixed Version | Urgency | Origin | Debian Bugs |
---|
lemonldap-ng | source | (unstable) | 2.21.3+ds-1 | | | |
Notes
[trixie] - lemonldap-ng <no-dsa> (Minor issue)
[bookworm] - lemonldap-ng <no-dsa> (Minor issue)
https://gitlab.ow2.org/lemonldap-ng/lemonldap-ng/-/issues/3446
https://gitlab.ow2.org/lemonldap-ng/lemonldap-ng/-/commit/a091e9b3f81fd33da1da8479e7ac442633db49c5 (v2.21.3)
https://gitlab.ow2.org/lemonldap-ng/lemonldap-ng/-/issues/3472
https://gitlab.ow2.org/lemonldap-ng/lemonldap-ng/-/commit/8a084a9b09c5aa24c557b4ae1161a84df92048e4 (v2.16.7)