ALSA-2024:2571

Source
https://errata.almalinux.org/9/ALSA-2024-2571.html
Import Source
https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2024:2571.json
JSON Data
https://api.osv.dev/v1/vulns/ALSA-2024:2571
Related
Published
2024-04-30T00:00:00Z
Modified
2024-05-07T15:07:15Z
Summary
Moderate: sssd security and bug fix update
Details

The System Security Services Daemon (SSSD) service provides a set of daemons to manage access to remote directories and authentication mechanisms. It also provides the Name Service Switch (NSS) and the Pluggable Authentication Modules (PAM) interfaces toward the system, and a pluggable back-end system to connect to multiple different account sources.

Security Fix(es):

  • sssd: Race condition during authorization leads to GPO policies functioning inconsistently (CVE-2023-3758)

Bug Fix(es):

  • socket leak (JIRA:AlmaLinux-22340)
  • Passkey cannot fall back to password (JIRA:AlmaLinux-28161)
  • sssd: Race condition during authorization leads to GPO policies functioning inconsistently (JIRA:AlmaLinux-27209)
References

Affected packages

AlmaLinux:9 / libipa_hbac

Package

Name
libipa_hbac

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.9.4-6.el9_4

AlmaLinux:9 / libsss_autofs

Package

Name
libsss_autofs

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.9.4-6.el9_4

AlmaLinux:9 / libsss_certmap

Package

Name
libsss_certmap

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.9.4-6.el9_4

AlmaLinux:9 / libsss_idmap

Package

Name
libsss_idmap

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.9.4-6.el9_4

AlmaLinux:9 / libsss_nss_idmap

Package

Name
libsss_nss_idmap

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.9.4-6.el9_4

AlmaLinux:9 / libsss_nss_idmap-devel

Package

Name
libsss_nss_idmap-devel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.9.4-6.el9_4

AlmaLinux:9 / libsss_simpleifp

Package

Name
libsss_simpleifp

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.9.4-6.el9_4

AlmaLinux:9 / libsss_sudo

Package

Name
libsss_sudo

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.9.4-6.el9_4

AlmaLinux:9 / python3-libipa_hbac

Package

Name
python3-libipa_hbac

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.9.4-6.el9_4

AlmaLinux:9 / python3-libsss_nss_idmap

Package

Name
python3-libsss_nss_idmap

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.9.4-6.el9_4

AlmaLinux:9 / python3-sss

Package

Name
python3-sss

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.9.4-6.el9_4

AlmaLinux:9 / python3-sss-murmur

Package

Name
python3-sss-murmur

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.9.4-6.el9_4

AlmaLinux:9 / python3-sssdconfig

Package

Name
python3-sssdconfig

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.9.4-6.el9_4

AlmaLinux:9 / sssd

Package

Name
sssd

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.9.4-6.el9_4

AlmaLinux:9 / sssd-ad

Package

Name
sssd-ad

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.9.4-6.el9_4

AlmaLinux:9 / sssd-client

Package

Name
sssd-client

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.9.4-6.el9_4

AlmaLinux:9 / sssd-common

Package

Name
sssd-common

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.9.4-6.el9_4

AlmaLinux:9 / sssd-common-pac

Package

Name
sssd-common-pac

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.9.4-6.el9_4

AlmaLinux:9 / sssd-dbus

Package

Name
sssd-dbus

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.9.4-6.el9_4

AlmaLinux:9 / sssd-idp

Package

Name
sssd-idp

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.9.4-6.el9_4

AlmaLinux:9 / sssd-ipa

Package

Name
sssd-ipa

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.9.4-6.el9_4

AlmaLinux:9 / sssd-kcm

Package

Name
sssd-kcm

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.9.4-6.el9_4

AlmaLinux:9 / sssd-krb5

Package

Name
sssd-krb5

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.9.4-6.el9_4

AlmaLinux:9 / sssd-krb5-common

Package

Name
sssd-krb5-common

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.9.4-6.el9_4

AlmaLinux:9 / sssd-ldap

Package

Name
sssd-ldap

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.9.4-6.el9_4

AlmaLinux:9 / sssd-nfs-idmap

Package

Name
sssd-nfs-idmap

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.9.4-6.el9_4

AlmaLinux:9 / sssd-passkey

Package

Name
sssd-passkey

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.9.4-6.el9_4

AlmaLinux:9 / sssd-polkit-rules

Package

Name
sssd-polkit-rules

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.9.4-6.el9_4

AlmaLinux:9 / sssd-proxy

Package

Name
sssd-proxy

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.9.4-6.el9_4

AlmaLinux:9 / sssd-tools

Package

Name
sssd-tools

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.9.4-6.el9_4

AlmaLinux:9 / sssd-winbind-idmap

Package

Name
sssd-winbind-idmap

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.9.4-6.el9_4