Описание
ELSA-2015-2019: sssd security and bug fix update (LOW)
[1.12.4-47.4]
- Resolves: rhbz#1268783 - Memory leak / possible DoS with krb auth.
[1.12.4-47.3]
- Resolves: rhbz#1268784 - SSSD POSIX attribute check is too strict
[1.12.4-47.2]
- Resolves: rhbz#1264098 - cleanup_groups should sanitize dn of groups
[1.12.4-47.1]
- Resolves: rhbz#1258398 - sysdb sudo search doesn't escape special characters
Обновленные пакеты
Oracle Linux 6
Oracle Linux x86_64
libipa_hbac
1.12.4-47.el6_7.4
libipa_hbac-devel
1.12.4-47.el6_7.4
libipa_hbac-python
1.12.4-47.el6_7.4
libsss_idmap
1.12.4-47.el6_7.4
libsss_idmap-devel
1.12.4-47.el6_7.4
libsss_nss_idmap
1.12.4-47.el6_7.4
libsss_nss_idmap-devel
1.12.4-47.el6_7.4
libsss_nss_idmap-python
1.12.4-47.el6_7.4
libsss_simpleifp
1.12.4-47.el6_7.4
libsss_simpleifp-devel
1.12.4-47.el6_7.4
python-sssdconfig
1.12.4-47.el6_7.4
sssd
1.12.4-47.el6_7.4
sssd-ad
1.12.4-47.el6_7.4
sssd-client
1.12.4-47.el6_7.4
sssd-common
1.12.4-47.el6_7.4
sssd-common-pac
1.12.4-47.el6_7.4
sssd-dbus
1.12.4-47.el6_7.4
sssd-ipa
1.12.4-47.el6_7.4
sssd-krb5
1.12.4-47.el6_7.4
sssd-krb5-common
1.12.4-47.el6_7.4
sssd-ldap
1.12.4-47.el6_7.4
sssd-proxy
1.12.4-47.el6_7.4
sssd-tools
1.12.4-47.el6_7.4
Oracle Linux i686
libipa_hbac
1.12.4-47.el6_7.4
libipa_hbac-devel
1.12.4-47.el6_7.4
libipa_hbac-python
1.12.4-47.el6_7.4
libsss_idmap
1.12.4-47.el6_7.4
libsss_idmap-devel
1.12.4-47.el6_7.4
libsss_nss_idmap
1.12.4-47.el6_7.4
libsss_nss_idmap-devel
1.12.4-47.el6_7.4
libsss_nss_idmap-python
1.12.4-47.el6_7.4
libsss_simpleifp
1.12.4-47.el6_7.4
libsss_simpleifp-devel
1.12.4-47.el6_7.4
python-sssdconfig
1.12.4-47.el6_7.4
sssd
1.12.4-47.el6_7.4
sssd-ad
1.12.4-47.el6_7.4
sssd-client
1.12.4-47.el6_7.4
sssd-common
1.12.4-47.el6_7.4
sssd-common-pac
1.12.4-47.el6_7.4
sssd-dbus
1.12.4-47.el6_7.4
sssd-ipa
1.12.4-47.el6_7.4
sssd-krb5
1.12.4-47.el6_7.4
sssd-krb5-common
1.12.4-47.el6_7.4
sssd-ldap
1.12.4-47.el6_7.4
sssd-proxy
1.12.4-47.el6_7.4
sssd-tools
1.12.4-47.el6_7.4
Связанные CVE
Связанные уязвимости
Memory leak in the Privilege Attribute Certificate (PAC) responder plugin (sssd_pac_plugin.so) in System Security Services Daemon (SSSD) 1.10 before 1.13.1 allows remote authenticated users to cause a denial of service (memory consumption) via a large number of logins that trigger parsing of PAC blobs during Kerberos authentication.
Memory leak in the Privilege Attribute Certificate (PAC) responder plugin (sssd_pac_plugin.so) in System Security Services Daemon (SSSD) 1.10 before 1.13.1 allows remote authenticated users to cause a denial of service (memory consumption) via a large number of logins that trigger parsing of PAC blobs during Kerberos authentication.
Memory leak in the Privilege Attribute Certificate (PAC) responder plugin (sssd_pac_plugin.so) in System Security Services Daemon (SSSD) 1.10 before 1.13.1 allows remote authenticated users to cause a denial of service (memory consumption) via a large number of logins that trigger parsing of PAC blobs during Kerberos authentication.
Memory leak in the Privilege Attribute Certificate (PAC) responder plu ...
Memory leak in the Privilege Attribute Certificate (PAC) responder plugin (sssd_pac_plugin.so) in System Security Services Daemon (SSSD) 1.10 before 1.13.1 allows remote authenticated users to cause a denial of service (memory consumption) via a large number of logins that trigger parsing of PAC blobs during Kerberos authentication.