Re: [SOGo] SAML Vulnerability

2021-06-01 Thread Francis Lachapelle
Hi Packages for releases v5.1.1 and v2.4.1 are now available, as well as new nightly builds. Don't forget to also update lasso if you use SAML2 authentication. Thanks, Francis > On Jun 1, 2021, at 08:45, Francis Lachapelle wrote: > > Dear Community Member, > > With the recent

[SOGo] SAML Vulnerability

2021-06-01 Thread Francis Lachapelle
Dear Community Member, With the recent vulnerability found in the Lasso library (CVE-2021-28091), which SOGo uses to do SAML-based authentication, we urge you to either disable SAML authentication or temporarily disable the SOGo service until updated packages are available for your operating