CVE-2018-10894
published 2018-08-01CVE-2018-10894: It was found that SAML authentication in Keycloak 3.4.3.Final incorrectly authenticated expired certificates. A malicious user could use this to access…
PriorityP428medium5.4CVSS 3.0
AVNACLPRLUINSUCLILAN
EPSS
0.35%
27.4th percentile
It was found that SAML authentication in Keycloak 3.4.3.Final incorrectly authenticated expired certificates. A malicious user could use this to access unauthorized data or possibly conduct further attacks.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| red_hat | keycloak | — | — |
| redhat | keycloak | — | — |
| redhat | single_sign-on | — | — |
CVSS provenance
nvdv3.05.4MEDIUMCVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N
nvdv2.05.5MEDIUMAV:N/AC:L/Au:S/C:P/I:P/A:N
vendor_redhat5.4MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
Keycloak Authentication Error
osv·2022-05-13
CVE-2018-10894 [MEDIUM] Keycloak Authentication Error
Keycloak Authentication Error
It was found that SAML authentication in Keycloak 3.4.3.Final incorrectly authenticated expired certificates. A malicious user could use this to access unauthorized data or possibly conduct further attacks.
GHSA
Keycloak Authentication Error
ghsa·2022-05-13
CVE-2018-10894 [MEDIUM] CWE-295 Keycloak Authentication Error
Keycloak Authentication Error
It was found that SAML authentication in Keycloak 3.4.3.Final incorrectly authenticated expired certificates. A malicious user could use this to access unauthorized data or possibly conduct further attacks.
Red Hat
keycloak: auth permitted with expired certs in SAML client
vendor_redhat·2018-07-09·CVSS 5.4
CVE-2018-10894 [MEDIUM] CWE-345 keycloak: auth permitted with expired certs in SAML client
keycloak: auth permitted with expired certs in SAML client
It was found that SAML authentication in Keycloak 3.4.3.Final incorrectly authenticated expired certificates. A malicious user could use this to access unauthorized data or possibly conduct further attacks.
Package: keycloak (Red Hat Fuse 7) - Will not fix
Package: keycloak (Red Hat Mobile Application Platform 4) - Out of support scope
Package: keycloak (Red Hat OpenShift Application Runtimes) - Affected
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2018-8027 camel-core: XXE in XSD validation processor
bugzilla·2018-08-02·CVSS 9.8
CVE-2018-8027 [CRITICAL] CVE-2018-8027 camel-core: XXE in XSD validation processor
CVE-2018-8027 camel-core: XXE in XSD validation processor
Apache Camel's Core versions 2.20.0 to 2.20.3 and 2.21.0 is vulnerable to XXE External Entity vulnerability XSD validation processor.
Upstream bug:
https://issues.apache.org/jira/browse/CAMEL-12444
https://issues.apache.org/jira/browse/CAMEL-10894
References:
https://lists.apache.org/thread.html/77f596fc63e63c2e9adcff3c34759b32c225cf0b582aedb755adaade@%3Cdev.camel.apache.org%3E
Discussion:
This vulnerability is out of security support scope for the following products:
* Red Hat JBoss BRMS 6
* Red Hat JBoss Data Virtualization & Services 6
* Red Hat JBoss BRMS 5
Please refer to https://access.redhat.com/support/policy/updates/jboss_notes for more details.
---
This bug is now closed. Further updates for individual products w
Bugzilla
CVE-2018-10894 keycloak: auth permitted with expired certs in SAML client
bugzilla·2018-07-09·CVSS 5.4
CVE-2018-10894 [MEDIUM] CVE-2018-10894 keycloak: auth permitted with expired certs in SAML client
CVE-2018-10894 keycloak: auth permitted with expired certs in SAML client
It was found that SAML authentication in Keycloak incorrectly authenticated expired certificates. A malicious user could use this to access unauthorized data or possibly conduct further attacks.
Discussion:
Acknowledgments:
Name: Benjamin Berg (Red Hat)
---
upstream patch: https://issues.jboss.org/secure/attachment/12439846/0001-KEYCLOAK-8163-Improve-SAML-validations.patch
attached to jira: https://issues.jboss.org/browse/KEYCLOAK-8163
---
This issue has been addressed in the following products:
Red Hat Single Sign-On 7.2 for RHEL 6
Via RHSA-2018:3592 https://access.redhat.com/errata/RHSA-2018:3592
---
This issue has been addressed in the following products:
Red Hat Single Sign-On 7.2 for RHEL 7
Via RHS
https://access.redhat.com/errata/RHSA-2018:3592https://access.redhat.com/errata/RHSA-2018:3593https://access.redhat.com/errata/RHSA-2018:3595https://access.redhat.com/errata/RHSA-2019:0877https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2018-10894https://access.redhat.com/errata/RHSA-2018:3592https://access.redhat.com/errata/RHSA-2018:3593https://access.redhat.com/errata/RHSA-2018:3595https://access.redhat.com/errata/RHSA-2019:0877https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2018-10894
2018-08-01
Published