Skip to content

Commit

Permalink
Update 2024-11-25-upcoming-security-release.md
Browse files Browse the repository at this point in the history
Reduce to one-liner
  • Loading branch information
tvdijen authored Nov 25, 2024
1 parent 9d4b8bc commit 35bf72e
Showing 1 changed file with 1 addition and 17 deletions.
18 changes: 1 addition & 17 deletions _posts/2024-11-25-upcoming-security-release.md
Original file line number Diff line number Diff line change
@@ -1,17 +1 @@
Hi!

We've been made aware of a security issue in one of the dependencies of SimpleSAMLphp,
The developers have evaluated the impact for SimpleSAMLphp, which we found to be high.
If you're using older versions or forks, please make sure you can build and release patched versions quickly.

Timeline will be as follows:

- Patch release on Sunday Dec 1st (as late as possible CET zone).
- New releases for OpenConext and SimpleSAMLphp the next day on Dec 2nd as early as possible.
- Publication of the security advisory with disclosure on the vulnerability on Sunday 8th.

We understand this message will raise questions about the impact and the scope of the vulnerability, but please understand that we cannot answer any questions as long as this vulnerability is under embargo.

Kind regards,

The developer-team
Please be advised that a new security release is coming op on Dec 2nd. Please read our [mailing list](https://groups.google.com/g/simplesamlphp-announce)

0 comments on commit 35bf72e

Please sign in to comment.