Описание
The System Security Services Daemon (SSSD) 1.11.6 does not properly identify group membership when a non-POSIX group is in a group membership chain, which allows local users to bypass access restrictions via unspecified vectors.
Затронутые пакеты
| Платформа | Пакет | Состояние | Рекомендация | Релиз |
|---|---|---|---|---|
| Red Hat Enterprise Linux 5 | sssd | Will not fix | ||
| Red Hat Enterprise Linux 6 | sssd | Fixed | RHBA-2014:1375 | 13.10.2014 |
| Red Hat Enterprise Linux 7 | sssd | Fixed | RHBA-2015:0441 | 05.03.2015 |
Показывать по
Дополнительная информация
Статус:
EPSS
2.1 Low
CVSS2
Связанные уязвимости
The System Security Services Daemon (SSSD) 1.11.6 does not properly identify group membership when a non-POSIX group is in a group membership chain, which allows local users to bypass access restrictions via unspecified vectors.
The System Security Services Daemon (SSSD) 1.11.6 does not properly identify group membership when a non-POSIX group is in a group membership chain, which allows local users to bypass access restrictions via unspecified vectors.
The System Security Services Daemon (SSSD) 1.11.6 does not properly id ...
EPSS
2.1 Low
CVSS2