PT-2024-40548 · Kanidm · Kanidm
Published
2024-03-30
·
Updated
2024-03-30
None
No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions:
kanidm versions prior to 1.1.0rc16git6.e51d0de
Description:
The issue is related to an administrator-triggered thread crash in oauth2 claim maps. This problem can be triggered by an administrator, leading to a thread crash. There is no information provided about the estimated number of potentially affected devices worldwide or real-world incidents where this issue was exploited.
Recommendations:
Update to version 1.1.0rc16git6.e51d0de or later to resolve the issue. As a temporary workaround, consider restricting access to the oauth2 claim maps functionality until the update is applied.
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Kanidm