Fedora 41: lemonldap-ng 2025-3aa9a75a72 Security Advisory Updates
Summary
LemonLdap::NG is a modular Web-SSO based on Apache::Session modules. It
simplifies the build of a protected area with a few changes in the
application. It manages both authentication and authorization and provides
headers for accounting.
So you can have a full AAA protection for your web space as described below.
Update Information:
[Security][CVE-2024-52948] CSRF on 2FA registration [Security] Open redirect vulnerability in logout
Change Log
* Tue Jan 21 2025 Clement Oudot
References
[ 1 ] Bug #2339165 - lemonldap-ng-2.20.2 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2339165
Update Instructions
This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-3aa9a75a72' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label