The SAML signature validation method in Keycloak uses the position of the signature within the XML document to determine if the signature is for the full document or an assertion. This approach can be exploited by attackers to bypass signature validation and perform unauthorized actions.
This issue has been addressed in the following products: Red Hat Single Sign-On 7.6 for RHEL 7 Via RHSA-2024:6878 https://access.redhat.com/errata/RHSA-2024:6878
This issue has been addressed in the following products: Red Hat Single Sign-On 7.6 for RHEL 8 Via RHSA-2024:6879 https://access.redhat.com/errata/RHSA-2024:6879
This issue has been addressed in the following products: Red Hat Single Sign-On 7.6 for RHEL 9 Via RHSA-2024:6880 https://access.redhat.com/errata/RHSA-2024:6880
This issue has been addressed in the following products: RHEL-8 based Middleware Containers Via RHSA-2024:6882 https://access.redhat.com/errata/RHSA-2024:6882
This issue has been addressed in the following products: Red Hat Single Sign-On Via RHSA-2024:6886 https://access.redhat.com/errata/RHSA-2024:6886
This issue has been addressed in the following products: Red Hat build of Keycloak 22 Via RHSA-2024:6888 https://access.redhat.com/errata/RHSA-2024:6888
This issue has been addressed in the following products: Red Hat build of Keycloak 22 Via RHSA-2024:6890 https://access.redhat.com/errata/RHSA-2024:6890
This issue has been addressed in the following products: Red Hat build of Keycloak 22 Via RHSA-2024:6887 https://access.redhat.com/errata/RHSA-2024:6887
This issue has been addressed in the following products: Red Hat build of Keycloak 24 Via RHSA-2024:6889 https://access.redhat.com/errata/RHSA-2024:6889
This issue has been addressed in the following products: Red Hat JBoss Enterprise Application Platform 8.0 for RHEL 9 Via RHSA-2024:8824 https://access.redhat.com/errata/RHSA-2024:8824
This issue has been addressed in the following products: Red Hat JBoss Enterprise Application Platform 8.0 for RHEL 8 Via RHSA-2024:8823 https://access.redhat.com/errata/RHSA-2024:8823
This issue has been addressed in the following products: Red Hat JBoss Enterprise Application Platform Via RHSA-2024:8826 https://access.redhat.com/errata/RHSA-2024:8826