vulnerability

Oracle Linux: CVE-2023-3758: ELSA-2024-3270: sssd security update (MODERATE) (Multiple Advisories)

Severity
6
CVSS
(AV:A/AC:H/Au:S/C:C/I:C/A:C)
Published
2024-04-16
Added
2024-05-08
Modified
2024-11-29

Description

A race condition flaw was found in sssd where the GPO policy is not consistently applied for authenticated users. This may lead to improper authorization issues, granting or denying access to resources inappropriately.

Solution(s)

oracle-linux-upgrade-libipa-hbacoracle-linux-upgrade-libsss-autofsoracle-linux-upgrade-libsss-certmaporacle-linux-upgrade-libsss-idmaporacle-linux-upgrade-libsss-nss-idmaporacle-linux-upgrade-libsss-nss-idmap-develoracle-linux-upgrade-libsss-simpleifporacle-linux-upgrade-libsss-sudooracle-linux-upgrade-python3-libipa-hbacoracle-linux-upgrade-python3-libsss-nss-idmaporacle-linux-upgrade-python3-sssoracle-linux-upgrade-python3-sssdconfigoracle-linux-upgrade-python3-sss-murmuroracle-linux-upgrade-sssdoracle-linux-upgrade-sssd-adoracle-linux-upgrade-sssd-clientoracle-linux-upgrade-sssd-commonoracle-linux-upgrade-sssd-common-pacoracle-linux-upgrade-sssd-dbusoracle-linux-upgrade-sssd-idporacle-linux-upgrade-sssd-ipaoracle-linux-upgrade-sssd-kcmoracle-linux-upgrade-sssd-krb5oracle-linux-upgrade-sssd-krb5-commonoracle-linux-upgrade-sssd-ldaporacle-linux-upgrade-sssd-nfs-idmaporacle-linux-upgrade-sssd-passkeyoracle-linux-upgrade-sssd-polkit-rulesoracle-linux-upgrade-sssd-proxyoracle-linux-upgrade-sssd-toolsoracle-linux-upgrade-sssd-winbind-idmap
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.