Provides a set of daemons to manage access to remote directories and authentication mechanisms. It provides an NSS and PAM interface toward the system and a pluggable back end system to connect to multiple different account sources. It is also the basis to provide client auditing and policy services for projects like FreeIPA.
Security Fix(es):
A flaw was found in sssd. When authenticating with a YubiKey, the SSSD PAM responder can crash due to a use-after-free vulnerability, where a memory pointer is incorrectly handled. A local attacker could exploit this flaw by manipulating smartcard or YubiKey contents, leading to a denial of service that disrupts authentication. This vulnerability also presents a potential for privilege escalation, although it is difficult to exploit.(CVE-2026-12610)
{
"severity": "Medium"
}{
"x86_64": [
"python3-sssd-2.6.1-25.oe2203sp4.x86_64.rpm",
"sssd-2.6.1-25.oe2203sp4.x86_64.rpm",
"sssd-debuginfo-2.6.1-25.oe2203sp4.x86_64.rpm",
"sssd-debugsource-2.6.1-25.oe2203sp4.x86_64.rpm",
"sssd-devel-2.6.1-25.oe2203sp4.x86_64.rpm"
],
"src": [
"sssd-2.6.1-25.oe2203sp4.src.rpm"
],
"noarch": [
"sssd-help-2.6.1-25.oe2203sp4.noarch.rpm"
],
"aarch64": [
"python3-sssd-2.6.1-25.oe2203sp4.aarch64.rpm",
"sssd-2.6.1-25.oe2203sp4.aarch64.rpm",
"sssd-debuginfo-2.6.1-25.oe2203sp4.aarch64.rpm",
"sssd-debugsource-2.6.1-25.oe2203sp4.aarch64.rpm",
"sssd-devel-2.6.1-25.oe2203sp4.aarch64.rpm"
]
}