python-pysaml2 is prone to a denial-of-service vulnerability.
Attackers can exploit this issue to resource exhaustion and crash the affected application, denying service to legitimate users.
Redhat OpenStack Platform 9.0
Redhat OpenStack Platform 8.0 (Liberty)
Redhat OpenStack Platform 10
- Bug 1415710 - (CVE-2016-10149) CVE-2016-10149 python-pysaml2: Entity expansion i (Red Hat Bugzilla)
- Fix XXE in XML parsing (rohe)
- pysaml2 Product Page (rohe)