Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2024-2571

Опубликовано: 07 мая 2024
Источник: oracle-oval
Платформа: Oracle Linux 9

Описание

ELSA-2024-2571: sssd security and bug fix update (MODERATE)

[2.9.4-6.0.1]

  • Restore default debug level for sss_cache [Orabug: 32810448]

[2.9.4-6]

  • Resolves: RHEL-27209 - Race condition during authorization leads to GPO policies functioning inconsistently [rhel-9.4.0]

[2.9.4-5]

  • Resolves: RHEL-28161 - Passkey cannot fall back to password

[2.9.4-4]

  • Resolves: RHEL-28161 - Passkey cannot fall back to password

[2.9.4-3]

  • Resolves: RHEL-22340 - socket leak
  • Resolves: RHEL-28161 - Passkey cannot fall back to password

Обновленные пакеты

Oracle Linux 9

Oracle Linux aarch64

libipa_hbac

2.9.4-6.0.1.el9_4

libsss_autofs

2.9.4-6.0.1.el9_4

libsss_certmap

2.9.4-6.0.1.el9_4

libsss_idmap

2.9.4-6.0.1.el9_4

libsss_nss_idmap

2.9.4-6.0.1.el9_4

libsss_nss_idmap-devel

2.9.4-6.0.1.el9_4

libsss_simpleifp

2.9.4-6.0.1.el9_4

libsss_sudo

2.9.4-6.0.1.el9_4

python3-libipa_hbac

2.9.4-6.0.1.el9_4

python3-libsss_nss_idmap

2.9.4-6.0.1.el9_4

python3-sss

2.9.4-6.0.1.el9_4

python3-sss-murmur

2.9.4-6.0.1.el9_4

python3-sssdconfig

2.9.4-6.0.1.el9_4

sssd

2.9.4-6.0.1.el9_4

sssd-ad

2.9.4-6.0.1.el9_4

sssd-client

2.9.4-6.0.1.el9_4

sssd-common

2.9.4-6.0.1.el9_4

sssd-common-pac

2.9.4-6.0.1.el9_4

sssd-dbus

2.9.4-6.0.1.el9_4

sssd-idp

2.9.4-6.0.1.el9_4

sssd-ipa

2.9.4-6.0.1.el9_4

sssd-kcm

2.9.4-6.0.1.el9_4

sssd-krb5

2.9.4-6.0.1.el9_4

sssd-krb5-common

2.9.4-6.0.1.el9_4

sssd-ldap

2.9.4-6.0.1.el9_4

sssd-nfs-idmap

2.9.4-6.0.1.el9_4

sssd-passkey

2.9.4-6.0.1.el9_4

sssd-polkit-rules

2.9.4-6.0.1.el9_4

sssd-proxy

2.9.4-6.0.1.el9_4

sssd-tools

2.9.4-6.0.1.el9_4

sssd-winbind-idmap

2.9.4-6.0.1.el9_4

Oracle Linux x86_64

libipa_hbac

2.9.4-6.0.1.el9_4

libsss_autofs

2.9.4-6.0.1.el9_4

libsss_certmap

2.9.4-6.0.1.el9_4

libsss_idmap

2.9.4-6.0.1.el9_4

libsss_nss_idmap

2.9.4-6.0.1.el9_4

libsss_nss_idmap-devel

2.9.4-6.0.1.el9_4

libsss_simpleifp

2.9.4-6.0.1.el9_4

libsss_sudo

2.9.4-6.0.1.el9_4

python3-libipa_hbac

2.9.4-6.0.1.el9_4

python3-libsss_nss_idmap

2.9.4-6.0.1.el9_4

python3-sss

2.9.4-6.0.1.el9_4

python3-sss-murmur

2.9.4-6.0.1.el9_4

python3-sssdconfig

2.9.4-6.0.1.el9_4

sssd

2.9.4-6.0.1.el9_4

sssd-ad

2.9.4-6.0.1.el9_4

sssd-client

2.9.4-6.0.1.el9_4

sssd-common

2.9.4-6.0.1.el9_4

sssd-common-pac

2.9.4-6.0.1.el9_4

sssd-dbus

2.9.4-6.0.1.el9_4

sssd-idp

2.9.4-6.0.1.el9_4

sssd-ipa

2.9.4-6.0.1.el9_4

sssd-kcm

2.9.4-6.0.1.el9_4

sssd-krb5

2.9.4-6.0.1.el9_4

sssd-krb5-common

2.9.4-6.0.1.el9_4

sssd-ldap

2.9.4-6.0.1.el9_4

sssd-nfs-idmap

2.9.4-6.0.1.el9_4

sssd-passkey

2.9.4-6.0.1.el9_4

sssd-polkit-rules

2.9.4-6.0.1.el9_4

sssd-proxy

2.9.4-6.0.1.el9_4

sssd-tools

2.9.4-6.0.1.el9_4

sssd-winbind-idmap

2.9.4-6.0.1.el9_4

Связанные CVE

Связанные уязвимости

CVSS3: 7.1
ubuntu
около 1 года назад

A race condition flaw was found in sssd where the GPO policy is not consistently applied for authenticated users. This may lead to improper authorization issues, granting or denying access to resources inappropriately.

CVSS3: 7.1
redhat
около 1 года назад

A race condition flaw was found in sssd where the GPO policy is not consistently applied for authenticated users. This may lead to improper authorization issues, granting or denying access to resources inappropriately.

CVSS3: 7.1
nvd
около 1 года назад

A race condition flaw was found in sssd where the GPO policy is not consistently applied for authenticated users. This may lead to improper authorization issues, granting or denying access to resources inappropriately.

CVSS3: 7.1
debian
около 1 года назад

A race condition flaw was found in sssd where the GPO policy is not co ...

suse-cvrf
около 1 года назад

Security update for sssd

Уязвимость ELSA-2024-2571