sssd: fallback_homedir returns '/' for empty home directories in passwd file (CVE-2019-3811) * sssd: improper implementation of GPOs due to too restrictive permissions (CVE-2018-16838) SL7 x86_64 sssd-polkit-rules-1.16.4-21.el7.x86_64.rpm sssd-proxy-1.16.4-21.el7.x86_64.rpm libsss_simpleifp-1.16.4-21.el7.i686.rpm libsss_certmap-1.16.4-21.el7.x86_64.rpm sssd-1.16.4-21.el [More...]. Synopsis: Moderate: sssd security, bug fix, and enhancement update Advisory ID: SLSA-2019:2177-1 Issue Date: 2019-08-06 CVE Numbers: CVE-2018-16838 CVE-2019-3811 -- The following packages have been upgraded to a later upstream version: sssd (1.16.4). Security Fix(es): * sssd: fallback_homedir returns '/' for empty home directories in passwd file (CVE-2019-3811) * sssd: improper implementation of GPOs due to too restrictive permissions (CVE-2018-16838) -- SL7 x86_64 sssd-polkit-rules-1.16.4-21.el7.x86_64.rpm sssd-proxy-1.16.4-21.el7.x86_64.rpm libsss_simpleifp-1.16.4-21.el7.i686.rpm libsss_certmap-1.16.4-21.el7.x86_64.rpm sssd-1.16.4-21.el7.x86_64.rpm sssd-ipa-1.16.4-21.el7.x86_64.rpm libipa_hbac-1.16.4-21.el7.x86_64.rpm libsss_simpleifp-1.16.4-21.el7.x86_64.rpm libsss_sudo-1.16.4-21.el7.x86_64.rpm python-sssdconfig-1.16.4-21.el7.noarch.rpm libsss_idmap-1.16.4-21.el7.i686.rpm libsss_nss_idmap-1.16.4-21.el7.i686.rpm libsss_autofs-1.16.4-21.el7.x86_64.rpm sssd-winbind-idmap-1.16.4-21.el7.x86_64.rpm libsss_certmap-1.16.4-21.el7.i686.rpm libipa_hbac-1.16.4-21.el7.i686.rpm sssd-client-1.16.4-21.el7.i686.rpm sssd-client-1.16.4-21.el7.x86_64.rpm sssd-krb5-common-1.16.4-21.el7.x86_64.rpm python-sss-1.16.4-21.el7.x86_64.rpm sssd-krb5-1.16.4-21.el7.x86_64.rpm sssd-common-1.16.4-21.el7.x86_64.rpm python-libipa_hbac-1.16.4-21.el7.x86_64.rpm sssd-libwbclient-1.16.4-21.el7.x86_64.rpm sssd-ad-1.16.4-21.el7.x86_64.rpm sssd-tools-1.16.4-21.el7.x86_64.rpm python-libsss_nss_idmap-1.16.4-21.el7.x86_64.rpm sssd-dbus-1.16.4-21.el7.x86_64.rpm libsss_idmap-1.16.4-21.el7.x86_64.rpm sssd-ldap-1.16.4-21.el7.x86_64.rpm sssd-kcm-1.16.4-21.el7.x86_64.rpm python-sss-murmur-1.16.4-21.el7.x86_64.rpm sssd-common-pac-1.16.4-21.el7.x86_64.rpm libsss_nss_idmap-1.16.4-21.el7.x86_64.rpm libsss_idmap-devel-1.16.4-21.el7.i686.rpm sssd-libwbclient-devel-1.16.4-21.el7.x86_64.rpm libsss_certmap-devel-1.16.4-21.el7.i686.rpm sssd-libwbclient-devel-1.16.4-21.el7.i686.rpm libsss_nss_idmap-devel-1.16.4-21.el7.x86_64.rpm libsss_nss_idmap-devel-1.16.4-21.el7.i686.rpm libsss_idmap-devel-1.16.4-21.el7.x86_64.rpm libsss_certmap-devel-1.16.4-21.el7.x86_64.rpm libipa_hbac-devel-1.16.4-21.el7.x86_64.rpm libipa_hbac-devel-1.16.4-21.el7.i686.rpm libsss_simpleifp-devel-1.16.4-21.el7.x86_64.rpm libsss_simpleifp-devel-1.16.4-21.el7.i686.rpm sssd-debuginfo-1.16.4-21.el7.i686.rpm sssd-debuginfo-1.16.4-21.el7.x86_64.rpm noarch python-sssdconfig-1.16.4-21.el7.noarch.rpm - Scientific Linux Development Team . A balanced sssd security update has been issued, addressing various bug reports related to GPO functionalities and the occurrence of blank home directories in Scientific Linux.. sssd security, SL7 update, Scientific Linux advisory, package vulnerability, home directory permissions. . LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.