Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2024-3270

Опубликовано: 29 мая 2024
Источник: oracle-oval
Платформа: Oracle Linux 8

Описание

ELSA-2024-3270: sssd security update (MODERATE)

[2.9.4-3.0.1]

  • Restore default debug level for sss_cache [Orabug: 32810448]

[2.9.4-3]

  • Resolves: RHEL-27205 - Race condition during authorization leads to GPO policies functioning inconsistently

Обновленные пакеты

Oracle Linux 8

Oracle Linux aarch64

libipa_hbac

2.9.4-3.0.1.el8_10

libsss_autofs

2.9.4-3.0.1.el8_10

libsss_certmap

2.9.4-3.0.1.el8_10

libsss_idmap

2.9.4-3.0.1.el8_10

libsss_nss_idmap

2.9.4-3.0.1.el8_10

libsss_nss_idmap-devel

2.9.4-3.0.1.el8_10

libsss_simpleifp

2.9.4-3.0.1.el8_10

libsss_sudo

2.9.4-3.0.1.el8_10

python3-libipa_hbac

2.9.4-3.0.1.el8_10

python3-libsss_nss_idmap

2.9.4-3.0.1.el8_10

python3-sss

2.9.4-3.0.1.el8_10

python3-sss-murmur

2.9.4-3.0.1.el8_10

python3-sssdconfig

2.9.4-3.0.1.el8_10

sssd

2.9.4-3.0.1.el8_10

sssd-ad

2.9.4-3.0.1.el8_10

sssd-client

2.9.4-3.0.1.el8_10

sssd-common

2.9.4-3.0.1.el8_10

sssd-common-pac

2.9.4-3.0.1.el8_10

sssd-dbus

2.9.4-3.0.1.el8_10

sssd-idp

2.9.4-3.0.1.el8_10

sssd-ipa

2.9.4-3.0.1.el8_10

sssd-kcm

2.9.4-3.0.1.el8_10

sssd-krb5

2.9.4-3.0.1.el8_10

sssd-krb5-common

2.9.4-3.0.1.el8_10

sssd-ldap

2.9.4-3.0.1.el8_10

sssd-nfs-idmap

2.9.4-3.0.1.el8_10

sssd-polkit-rules

2.9.4-3.0.1.el8_10

sssd-proxy

2.9.4-3.0.1.el8_10

sssd-tools

2.9.4-3.0.1.el8_10

sssd-winbind-idmap

2.9.4-3.0.1.el8_10

Oracle Linux x86_64

libipa_hbac

2.9.4-3.0.1.el8_10

libsss_autofs

2.9.4-3.0.1.el8_10

libsss_certmap

2.9.4-3.0.1.el8_10

libsss_idmap

2.9.4-3.0.1.el8_10

libsss_nss_idmap

2.9.4-3.0.1.el8_10

libsss_nss_idmap-devel

2.9.4-3.0.1.el8_10

libsss_simpleifp

2.9.4-3.0.1.el8_10

libsss_sudo

2.9.4-3.0.1.el8_10

python3-libipa_hbac

2.9.4-3.0.1.el8_10

python3-libsss_nss_idmap

2.9.4-3.0.1.el8_10

python3-sss

2.9.4-3.0.1.el8_10

python3-sss-murmur

2.9.4-3.0.1.el8_10

python3-sssdconfig

2.9.4-3.0.1.el8_10

sssd

2.9.4-3.0.1.el8_10

sssd-ad

2.9.4-3.0.1.el8_10

sssd-client

2.9.4-3.0.1.el8_10

sssd-common

2.9.4-3.0.1.el8_10

sssd-common-pac

2.9.4-3.0.1.el8_10

sssd-dbus

2.9.4-3.0.1.el8_10

sssd-idp

2.9.4-3.0.1.el8_10

sssd-ipa

2.9.4-3.0.1.el8_10

sssd-kcm

2.9.4-3.0.1.el8_10

sssd-krb5

2.9.4-3.0.1.el8_10

sssd-krb5-common

2.9.4-3.0.1.el8_10

sssd-ldap

2.9.4-3.0.1.el8_10

sssd-nfs-idmap

2.9.4-3.0.1.el8_10

sssd-polkit-rules

2.9.4-3.0.1.el8_10

sssd-proxy

2.9.4-3.0.1.el8_10

sssd-tools

2.9.4-3.0.1.el8_10

sssd-winbind-idmap

2.9.4-3.0.1.el8_10

Связанные CVE

Связанные уязвимости

CVSS3: 7.1
ubuntu
около 1 года назад

A race condition flaw was found in sssd where the GPO policy is not consistently applied for authenticated users. This may lead to improper authorization issues, granting or denying access to resources inappropriately.

CVSS3: 7.1
redhat
около 1 года назад

A race condition flaw was found in sssd where the GPO policy is not consistently applied for authenticated users. This may lead to improper authorization issues, granting or denying access to resources inappropriately.

CVSS3: 7.1
nvd
около 1 года назад

A race condition flaw was found in sssd where the GPO policy is not consistently applied for authenticated users. This may lead to improper authorization issues, granting or denying access to resources inappropriately.

CVSS3: 7.1
debian
около 1 года назад

A race condition flaw was found in sssd where the GPO policy is not co ...

suse-cvrf
около 1 года назад

Security update for sssd

Уязвимость ELSA-2024-3270