- Description
- A denial of service vulnerability exists in the lasso_provider_verify_saml_signature functionality of Entr'ouvert Lasso 2.5.1. A specially crafted SAML response can lead to a denial of service. An attacker can send a malformed SAML response to trigger this vulnerability.
- Source
- talos-cna@cisco.com
- NVD status
- Analyzed
- Products
- lasso
CVSS 3.1
- Type
- Primary
- Base score
- 7.5
- Impact score
- 3.6
- Exploitability score
- 3.9
- Vector string
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
- Severity
- HIGH
- talos-cna@cisco.com
- CWE-476
- Hype score
- Not currently trending
CVE-2025-46404 (CVSS:7.5, HIGH) is Analyzed. A denial of service vulnerability exists in the lasso_provider_verify_saml_signature functionality of Entr'ouvert La..https://t.co/26PYCiEyEY #cybersecurityawareness #cybersecurity #CVE #infosec #hacker #nvd #mitre
@cracbot
10 Nov 2025
4 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
[CVE-2025-46404: CRITICAL] Denial of service vulnerability in Entr'ouvert Lasso 2.5.1. Attackers can exploit lasso_provider_verify_saml_signature to trigger denial of service with a specially crafted SAML re...#cve,CVE-2025-46404,#cybersecurity https://t.co/XJPcDsGdiv https://t.c
@CveFindCom
5 Nov 2025
16 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
**CVE-2025-46404** is a critical denial of service (DoS) vulnerability affecting **Entr'ouvert Lasso 2.5.1**, specifically within the `lasso_provider_verify_saml_signature` function. This function is responsible for verifying SAML (Security Assertion Markup Language) signatures,
@CveTodo
5 Nov 2025
26 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
CVE-2025-46404 A denial of service vulnerability exists in the lasso_provider_verify_saml_signature functionality of Entr'ouvert Lasso 2.5.1. A specially crafted SAML response c… https://t.co/6Q2rzRc5vL
@CVEnew
5 Nov 2025
139 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
[
{
"nodes": [
{
"cpeMatch": [
{
"criteria": "cpe:2.3:a:entrouvert:lasso:2.5.1:*:*:*:*:*:*:*",
"matchCriteriaId": "7177DC8A-9874-45BA-BC80-17604D8A0875",
"vulnerable": true
}
],
"negate": false,
"operator": "OR"
}
]
}
]