Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2012-3462

Опубликовано: 26 дек. 2019
Источник: debian

Описание

A flaw was found in SSSD version 1.9.0. The SSSD's access-provider logic causes the result of the HBAC rule processing to be ignored in the event that the access-provider is also handling the setup of the user's SELinux user context.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
sssdfixed1.10.0-1package

Примечания

  • https://pagure.io/SSSD/sssd/issue/1470

  • https://pagure.io/SSSD/sssd/c/ffcf27b0b773b580289d596f796aaf86c45ba920 (master)

Связанные уязвимости

CVSS3: 8.8
ubuntu
около 6 лет назад

A flaw was found in SSSD version 1.9.0. The SSSD's access-provider logic causes the result of the HBAC rule processing to be ignored in the event that the access-provider is also handling the setup of the user's SELinux user context.

CVSS3: 8.8
nvd
около 6 лет назад

A flaw was found in SSSD version 1.9.0. The SSSD's access-provider logic causes the result of the HBAC rule processing to be ignored in the event that the access-provider is also handling the setup of the user's SELinux user context.

CVSS3: 8.8
github
почти 4 года назад

A flaw was found in SSSD version 1.9.0. The SSSD's access-provider logic causes the result of the HBAC rule processing to be ignored in the event that the access-provider is also handling the setup of the user's SELinux user context.