cbcvebase.
CVE-2021-20718
published 2021-05-20

CVE-2021-20718: mod_auth_openidc 2.4.0 to 2.4.7 allows a remote attacker to cause a denial-of-service (DoS) condition via unspecified vectors.

high7.5CVSS 3.1
AVNACLPRNUINSUCNINAH
mod_auth_openidc 2.4.0 to 2.4.7 allows a remote attacker to cause a denial-of-service (DoS) condition via unspecified vectors.

Affected

7 ranges
VendorProductVersion rangeFixed in
debianlibapache2-mod-auth-openidc< libapache2-mod-auth-openidc 2.4.4.1-2 (bookworm)libapache2-mod-auth-openidc 2.4.4.1-2 (bookworm)
fedoraprojectfedora
fedoraprojectfedora
msrccbl2_mod_auth_openidc_2.4.14.2-1_on_cbl_mariner_2.0
openidcmod_auth_openidc2.4.0 – 2.4.7
oracleessbase< 21.321.3
zmartzonemod_auth_openidc

CVSS provenance

nvdv3.17.5HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
osv7.5HIGH