#1781 sssd: Out-of-bounds read flaws in autofs and ssh services responders

Created 4 years ago by jhrozek
Modified 9 months ago

Multiple out-of-buffer bounds read flaws were found in the way autofs and ssh service responders of sssd, a System Security Services Daemon, performed parsing of SSSD packet values. An attacker could provide a specially-crafted packet that, when processed by the autofs or ssh service responders of sssd would lead to sssd server crash (temporary denial of service).

This issue was found by Florian Weimer of Red Hat Product Security Team.

Fields changed

owner: somebody => jcholast

resolution: => fixed
status: new => closed

9 months ago

Metadata Update from @jhrozek:
- Issue assigned to jcholast
- Issue set to the milestone: SSSD 1.9.4

Login to comment on this ticket.

defect

SSSD

1.9.3

0

0

884601

0

cancel