CVE-2011-2516
Last modified
CVE-2011-2516 is a vulnerability of currently unknown severity. Off-by-one error in the XML signature feature in Apache XML Security for C++ 1.6.0, as used in Shibboleth before 2.4.3 and possibly other products, allows remote attackers to cause a denial of service (crash) via a signature using a large RSA key, which triggers a buffer overflow.. EPSS estimates a 7.72% chance of exploitation in the next 30 days.
Description
Off-by-one error in the XML signature feature in Apache XML Security for C++ 1.6.0, as used in Shibboleth before 2.4.3 and possibly other products, allows remote attackers to cause a denial of service (crash) via a signature using a large RSA key, which triggers a buffer overflow.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Apache | Xml Security For C\+\+ | 1.6.0 |
| Shibboleth | Shibboleth-Sp | <= 2.4.2 |
| Shibboleth | Shibboleth-Sp | 1.3.1 |
| Shibboleth | Shibboleth-Sp | 1.3.2 |
| Shibboleth | Shibboleth-Sp | 1.3.3 |
| Shibboleth | Shibboleth-Sp | 1.3.4 |
| Shibboleth | Shibboleth-Sp | 1.3.5 |
| Shibboleth | Shibboleth-Sp | 1.3f |
| Shibboleth | Shibboleth-Sp | 2.0 |
| Shibboleth | Shibboleth-Sp | 2.1 |
| Shibboleth | Shibboleth-Sp | 2.2 |
| Shibboleth | Shibboleth-Sp | 2.2.1 |
| Shibboleth | Shibboleth-Sp | 2.3 |
| Shibboleth | Shibboleth-Sp | 2.3.1 |
| Shibboleth | Shibboleth-Sp | 2.4 |
| Shibboleth | Shibboleth-Sp | 2.4.1 |
References
- http://santuario.apache.org/secadv/CVE-2011-2516.txtVendor Advisory
- http://secunia.com/advisories/45151Vendor Advisory
- http://secunia.com/advisories/45191Vendor Advisory
- http://shibboleth.internet2.edu/secadv/secadv_20110706.txtVendor Advisory
- http://santuario.apache.org/secadv/CVE-2011-2516.txtVendor Advisory
- http://secunia.com/advisories/45151Vendor Advisory
- http://secunia.com/advisories/45191Vendor Advisory
- http://shibboleth.internet2.edu/secadv/secadv_20110706.txtVendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2011-2516?
How severe is CVE-2011-2516?
How do I fix CVE-2011-2516?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2011
- CVE-2011-2510Cross-site scripting (XSS) vulnerability in the RSS embeddin…
- CVE-2011-2511Integer overflow in libvirt before 0.9.3 allows remote authe…
- CVE-2011-2512The virtio_queue_notify in qemu-kvm 0.14.0 and earlier does …
- CVE-2011-2513The Java Network Launching Protocol (JNLP) implementation in…
- CVE-2011-2514The Java Network Launching Protocol (JNLP) implementation in…
- CVE-2011-2515PackageKit 0.6.17 allows installation of unsigned RPM packag…5.3
- CVE-2011-2517Multiple buffer overflows in net/wireless/nl80211.c in the L…
- CVE-2011-2518The tomoyo_mount_acl function in security/tomoyo/mount.c in …
- CVE-2011-2519Xen in the Linux kernel, when running a guest on a host with…
- CVE-2011-2520fw_dbus.py in system-config-firewall 1.2.29 and earlier uses…7.8
- CVE-2011-2521The x86_assign_hw_event function in arch/x86/kernel/cpu/perf…
- CVE-2011-2522Multiple cross-site request forgery (CSRF) vulnerabilities i…
Are you affected by CVE-2011-2516?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
