mod_auth_mellon (SL7)

Synopsis: Moderate: mod_auth_mellon security and bug fix update
Advisory ID: SLSA-2020:1003-1
Issue Date: 2020-04-07
CVE Numbers: CVE-2019-13038

* mod_auth_mellon: Open Redirect via the login?ReturnTo= substring which
could facilitate information theft

SL7
x86_64
mod_auth_mellon-diagnostics-0.14.0-8.el7.x86_64.rpm
mod_auth_mellon-0.14.0-8.el7.x86_64.rpm
mod_auth_mellon-debuginfo-0.14.0-8.el7.x86_64.rpm

– Scientific Linux Development Team