Alerts This Week
Warning Icon 1 619
Alerts This Week
Warning Icon 1 619

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":548,"type":"x","order":1,"pct":78.51,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.3,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.87,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.32,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -8 articles for you...
100

SUSE 2019:0081-1 Moderate: sssd Permissions Disclosure Issue

An update that solves one vulnerability and has 6 fixes is now available. . SUSE Security Update: Security update for sssd ______________________________________________________________________________ Announcement ID: SUSE-SU-2019:0081-1 Rating: moderate References: #1010700 #1072728 #1080156 #1087320 #1098377 #1101877 #1110299 Cross-References: CVE-2018-10852 Affected Products: SUSE OpenStack Cloud 7 SUSE Linux Enterprise Software Development Kit 12-SP3 SUSE Linux Enterprise Server for SAP 12-SP2 SUSE Linux Enterprise Server 12-SP3 SUSE Linux Enterprise Server 12-SP2-LTSS SUSE Linux Enterprise Desktop 12-SP3 SUSE Enterprise Storage 4 ______________________________________________________________________________ An update that solves one vulnerability and has 6 fixes is now available. Description: This update for sssd provides the following fixes: This security issue was fixed: - CVE-2018-10852: Set stricter permissions on /var/lib/sss/pipes/sudo to prevent the disclosure of sudo rules for arbitrary users (bsc#1098377) These non-security issues were fixed: - Fix a segmentation fault in sss_cache command. (bsc#1072728) - Fix a failure in autofs initialisation sequence upon system boot. (bsc#1010700) - Fix race condition on boot between SSSD and autofs. (bsc#1010700) - Fix a bug where file descriptors were not closed (bsc#1080156) - Fix an issue where sssd logs were not rotated properly (bsc#1080156) - Remove whitespaces from netgroup entries (bsc#1087320) - Remove misleading log messages (bsc#1101877) - exit() the forked process if exec()-ing a child process fails (bsc#1110299) - Do not schedule the machine renewal task if adcli is not executable (bsc#1110299) Patch Instructions: To install this SUSE Security Update use the SUSE recommendedinstallation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - SUSE OpenStack Cloud 7: zypper in -t patch SUSE-OpenStack-Cloud-7-2019-81=1 - SUSE Linux Enterprise Software Development Kit 12-SP3: zypper in -t patch SUSE-SLE-SDK-12-SP3-2019-81=1 - SUSE Linux Enterprise Server for SAP 12-SP2: zypper in -t patch SUSE-SLE-SAP-12-SP2-2019-81=1 - SUSE Linux Enterprise Server 12-SP3: zypper in -t patch SUSE-SLE-SERVER-12-SP3-2019-81=1 - SUSE Linux Enterprise Server 12-SP2-LTSS: zypper in -t patch SUSE-SLE-SERVER-12-SP2-2019-81=1 - SUSE Linux Enterprise Desktop 12-SP3: zypper in -t patch SUSE-SLE-DESKTOP-12-SP3-2019-81=1 - SUSE Enterprise Storage 4: zypper in -t patch SUSE-Storage-4-2019-81=1 Package List: - SUSE OpenStack Cloud 7 (s390x x86_64): libipa_hbac0-1.13.4-34.23.1 libipa_hbac0-debuginfo-1.13.4-34.23.1 libsss_idmap0-1.13.4-34.23.1 libsss_idmap0-debuginfo-1.13.4-34.23.1 libsss_sudo-1.13.4-34.23.1 libsss_sudo-debuginfo-1.13.4-34.23.1 python-sssd-config-1.13.4-34.23.1 python-sssd-config-debuginfo-1.13.4-34.23.1 sssd-1.13.4-34.23.1 sssd-32bit-1.13.4-34.23.1 sssd-ad-1.13.4-34.23.1 sssd-ad-debuginfo-1.13.4-34.23.1 sssd-debuginfo-1.13.4-34.23.1 sssd-debuginfo-32bit-1.13.4-34.23.1 sssd-debugsource-1.13.4-34.23.1 sssd-ipa-1.13.4-34.23.1 sssd-ipa-debuginfo-1.13.4-34.23.1 sssd-krb5-1.13.4-34.23.1 sssd-krb5-common-1.13.4-34.23.1 sssd-krb5-common-debuginfo-1.13.4-34.23.1 sssd-krb5-debuginfo-1.13.4-34.23.1 sssd-ldap-1.13.4-34.23.1 sssd-ldap-debuginfo-1.13.4-34.23.1 sssd-proxy-1.13.4-34.23.1 sssd-proxy-debuginfo-1.13.4-34.23.1 sssd-tools-1.13.4-34.23.1 sssd-tools-debuginfo-1.13.4-34.23.1 - SUSE Linux Enterprise Software Development Kit 12-SP3 (aarch64 ppc64le s390x x86_64): libipa_hbac-devel-1.13.4-34.23.1 libsss_idmap-devel-1.13.4-34.23.1 libsss_nss_idmap-devel-1.13.4-34.23.1 sssd-debuginfo-1.13.4-34.23.1 sssd-debugsource-1.13.4-34.23.1 - SUSE Linux Enterprise Server for SAP 12-SP2 (ppc64le x86_64): libipa_hbac0-1.13.4-34.23.1 libipa_hbac0-debuginfo-1.13.4-34.23.1 libsss_idmap0-1.13.4-34.23.1 libsss_idmap0-debuginfo-1.13.4-34.23.1 libsss_sudo-1.13.4-34.23.1 libsss_sudo-debuginfo-1.13.4-34.23.1 python-sssd-config-1.13.4-34.23.1 python-sssd-config-debuginfo-1.13.4-34.23.1 sssd-1.13.4-34.23.1 sssd-ad-1.13.4-34.23.1 sssd-ad-debuginfo-1.13.4-34.23.1 sssd-debuginfo-1.13.4-34.23.1 sssd-debugsource-1.13.4-34.23.1 sssd-ipa-1.13.4-34.23.1 sssd-ipa-debuginfo-1.13.4-34.23.1 sssd-krb5-1.13.4-34.23.1 sssd-krb5-common-1.13.4-34.23.1 sssd-krb5-common-debuginfo-1.13.4-34.23.1 sssd-krb5-debuginfo-1.13.4-34.23.1 sssd-ldap-1.13.4-34.23.1 sssd-ldap-debuginfo-1.13.4-34.23.1 sssd-proxy-1.13.4-34.23.1 sssd-proxy-debuginfo-1.13.4-34.23.1 sssd-tools-1.13.4-34.23.1 sssd-tools-debuginfo-1.13.4-34.23.1 - SUSE Linux Enterprise Server for SAP 12-SP2 (x86_64): sssd-32bit-1.13.4-34.23.1 sssd-debuginfo-32bit-1.13.4-34.23.1 - SUSE Linux Enterprise Server 12-SP3 (aarch64 ppc64le s390x x86_64): libipa_hbac0-1.13.4-34.23.1 libipa_hbac0-debuginfo-1.13.4-34.23.1 libsss_idmap0-1.13.4-34.23.1 libsss_idmap0-debuginfo-1.13.4-34.23.1 libsss_nss_idmap0-1.13.4-34.23.1 libsss_nss_idmap0-debuginfo-1.13.4-34.23.1 libsss_sudo-1.13.4-34.23.1 libsss_sudo-debuginfo-1.13.4-34.23.1 python-sssd-config-1.13.4-34.23.1 python-sssd-config-debuginfo-1.13.4-34.23.1 sssd-1.13.4-34.23.1 sssd-ad-1.13.4-34.23.1 sssd-ad-debuginfo-1.13.4-34.23.1 sssd-debuginfo-1.13.4-34.23.1 sssd-debugsource-1.13.4-34.23.1 sssd-ipa-1.13.4-34.23.1 sssd-ipa-debuginfo-1.13.4-34.23.1 sssd-krb5-1.13.4-34.23.1 sssd-krb5-common-1.13.4-34.23.1 sssd-krb5-common-debuginfo-1.13.4-34.23.1 sssd-krb5-debuginfo-1.13.4-34.23.1 sssd-ldap-1.13.4-34.23.1 sssd-ldap-debuginfo-1.13.4-34.23.1 sssd-proxy-1.13.4-34.23.1 sssd-proxy-debuginfo-1.13.4-34.23.1 sssd-tools-1.13.4-34.23.1 sssd-tools-debuginfo-1.13.4-34.23.1 - SUSE Linux Enterprise Server 12-SP3 (s390x x86_64): sssd-32bit-1.13.4-34.23.1 sssd-debuginfo-32bit-1.13.4-34.23.1 - SUSE Linux Enterprise Server 12-SP2-LTSS (ppc64le s390x x86_64): libipa_hbac0-1.13.4-34.23.1 libipa_hbac0-debuginfo-1.13.4-34.23.1 libsss_idmap0-1.13.4-34.23.1 libsss_idmap0-debuginfo-1.13.4-34.23.1 libsss_sudo-1.13.4-34.23.1 libsss_sudo-debuginfo-1.13.4-34.23.1 python-sssd-config-1.13.4-34.23.1 python-sssd-config-debuginfo-1.13.4-34.23.1 sssd-1.13.4-34.23.1 sssd-ad-1.13.4-34.23.1 sssd-ad-debuginfo-1.13.4-34.23.1 sssd-debuginfo-1.13.4-34.23.1 sssd-debugsource-1.13.4-34.23.1 sssd-ipa-1.13.4-34.23.1 sssd-ipa-debuginfo-1.13.4-34.23.1 sssd-krb5-1.13.4-34.23.1 sssd-krb5-common-1.13.4-34.23.1 sssd-krb5-common-debuginfo-1.13.4-34.23.1 sssd-krb5-debuginfo-1.13.4-34.23.1 sssd-ldap-1.13.4-34.23.1 sssd-ldap-debuginfo-1.13.4-34.23.1 sssd-proxy-1.13.4-34.23.1 sssd-proxy-debuginfo-1.13.4-34.23.1 sssd-tools-1.13.4-34.23.1 sssd-tools-debuginfo-1.13.4-34.23.1 - SUSE Linux Enterprise Server 12-SP2-LTSS (s390x x86_64): sssd-32bit-1.13.4-34.23.1 sssd-debuginfo-32bit-1.13.4-34.23.1 - SUSE Linux Enterprise Desktop 12-SP3 (x86_64): libipa_hbac0-1.13.4-34.23.1 libipa_hbac0-debuginfo-1.13.4-34.23.1 libsss_idmap0-1.13.4-34.23.1 libsss_idmap0-debuginfo-1.13.4-34.23.1 libsss_nss_idmap0-1.13.4-34.23.1 libsss_nss_idmap0-debuginfo-1.13.4-34.23.1 libsss_sudo-1.13.4-34.23.1 libsss_sudo-debuginfo-1.13.4-34.23.1 python-sssd-config-1.13.4-34.23.1 python-sssd-config-debuginfo-1.13.4-34.23.1 sssd-1.13.4-34.23.1 sssd-32bit-1.13.4-34.23.1 sssd-ad-1.13.4-34.23.1 sssd-ad-debuginfo-1.13.4-34.23.1 sssd-debuginfo-1.13.4-34.23.1 sssd-debuginfo-32bit-1.13.4-34.23.1 sssd-debugsource-1.13.4-34.23.1 sssd-ipa-1.13.4-34.23.1 sssd-ipa-debuginfo-1.13.4-34.23.1 sssd-krb5-1.13.4-34.23.1 sssd-krb5-common-1.13.4-34.23.1 sssd-krb5-common-debuginfo-1.13.4-34.23.1 sssd-krb5-debuginfo-1.13.4-34.23.1 sssd-ldap-1.13.4-34.23.1 sssd-ldap-debuginfo-1.13.4-34.23.1 sssd-proxy-1.13.4-34.23.1 sssd-proxy-debuginfo-1.13.4-34.23.1 sssd-tools-1.13.4-34.23.1 sssd-tools-debuginfo-1.13.4-34.23.1 - SUSE Enterprise Storage 4 (x86_64): libipa_hbac0-1.13.4-34.23.1 libipa_hbac0-debuginfo-1.13.4-34.23.1 libsss_idmap0-1.13.4-34.23.1 libsss_idmap0-debuginfo-1.13.4-34.23.1 libsss_sudo-1.13.4-34.23.1 libsss_sudo-debuginfo-1.13.4-34.23.1 python-sssd-config-1.13.4-34.23.1 python-sssd-config-debuginfo-1.13.4-34.23.1 sssd-1.13.4-34.23.1 sssd-32bit-1.13.4-34.23.1 sssd-ad-1.13.4-34.23.1 sssd-ad-debuginfo-1.13.4-34.23.1 sssd-debuginfo-1.13.4-34.23.1 sssd-debuginfo-32bit-1.13.4-34.23.1 sssd-debugsource-1.13.4-34.23.1 sssd-ipa-1.13.4-34.23.1 sssd-ipa-debuginfo-1.13.4-34.23.1 sssd-krb5-1.13.4-34.23.1 sssd-krb5-common-1.13.4-34.23.1 sssd-krb5-common-debuginfo-1.13.4-34.23.1 sssd-krb5-debuginfo-1.13.4-34.23.1 sssd-ldap-1.13.4-34.23.1 sssd-ldap-debuginfo-1.13.4-34.23.1 sssd-proxy-1.13.4-34.23.1 sssd-proxy-debuginfo-1.13.4-34.23.1 sssd-tools-1.13.4-34.23.1 sssd-tools-debuginfo-1.13.4-34.23.1 References: https://www.suse.com/security/cve/CVE-2018-10852.html https://bugzilla.suse.com/1010700 https://bugzilla.suse.com/1072728 https://bugzilla.suse.com/1080156 https://bugzilla.suse.com/1087320 https://bugzilla.suse.com/1098377 https://bugzilla.suse.com/1101877 https://bugzilla.suse.com/1110299 _______________________________________________ sle-security-updates mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. http://lists.suse.com/mailman/listinfo/sle-security-updates . SUSE Security Patch for sssd addresses a vulnerability by implementing more stringent access controls on sudo configurations.. sssd update, SUSE security advisory, permissions disclosure, software fix. . LinuxSecurity.com Team

Calendar 2 Jan 11, 2019 SuSE
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":548,"type":"x","order":1,"pct":78.51,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.3,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.87,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.32,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here