-
Bug
-
Resolution: Unresolved
-
Major
-
None
-
PLINK_2.5.2.FInal
-
None
An application is a SAML SP. A SAML request to the SP has an Encrypted assertion.
If a decrypted assertion is not a normalized XML, it causes ClassCastException:
Caused by: java.lang.ClassCastException: org.codehaus.stax2.ri.evt.CharactersEventImpl cannot be cast to javax.xml.stream.events.EndElement
at org.picketlink.identity.federation.core.parsers.saml.SAMLSubjectParser.parse(SAMLSubjectParser.java:128)
at org.picketlink.identity.federation.core.parsers.saml.SAMLAssertionParser.parse(SAMLAssertionParser.java:132)
at org.picketlink.identity.federation.core.parsers.saml.SAMLParser.parse(SAMLParser.java:67)
at org.picketlink.identity.federation.web.handlers.saml2.SAML2AuthenticationHandler$SPAuthenticationHandler.decryptAssertion(SAML2AuthenticationHandler.java:574)
- is cloned by
-
JBEAP-17123 [GSS](7.2.z) Encrypted non-normalized assertion causes ClassCastException
- Closed