Details
-
Request
-
Status: Open
-
Major
-
Resolution: Unresolved
-
1.7.1
Description
I primarily intended to raise this ticket to request the use of the latest version of opensaml (2.6.4) in the upcoming version of rampart-trust. However, it can be seen that the required code changes have already been made as a part of the fixes made for the following improvement ticket: https://issues.apache.org/jira/browse/RAMPART-440
Related commit: https://github.com/apache/rampart/commit/5bf6369563a2511bd40b297b01db078c6487f32f
Thus, I am raising this ticket to request the release of a new version of rampart-trust which would be inclusive of the above-mentioned code changes. This upcoming version of rampart-trust is highly being required to be able to use the latest version of opensaml (2.6.4) and in turn to get past the vulnerabilities coming with the older versions of opensaml.