CVE-2022-4254 sssd: libsss_certmap fails to sanitise certificate data used in LDAP filters Not Provided 2023-02-01 2023-02-01
CVE-2019-3811 A vulnerability was found in sssd. If a user was configured with no home directory set, sssd would return '/' (the root direc... Not Provided 2019-01-15 2023-02-12
CVE-2018-16883 sssd versions from 1.13.0 to before 2.0.0 did not properly restrict access to the infopipe according to the "allowed_uids" co... 5.5 - MEDIUM 2018-12-19 2019-10-09
CVE-2018-16838 A flaw was found in sssd Group Policy Objects implementation. When the GPO is not readable by SSSD due to a too strict permis... Not Provided 2019-03-25 2023-02-13
CVE-2018-10852 The UNIX pipe which sudo uses to contact SSSD and read the available sudo rules from SSSD has too wide permissions, which mea... 7.5 - HIGH 2018-06-26 2019-10-09
CVE-2017-12173 It was found that sssd's sysdb_search_user_by_upn_res() function before 1.16.0 did not sanitize requests when querying its lo... 8.8 - HIGH 2018-07-27 2019-10-09
CVE-2017-7488 Authconfig version 6.2.8 is vulnerable to an Information exposure while using SSSD to authenticate against remote server resu... 8.8 - HIGH 2017-05-16 2023-02-12
CVE-2015-5292 Memory leak in the Privilege Attribute Certificate (PAC) responder plugin ( in System Security Services Da... 8.8 - HIGH 2015-10-29 2023-02-13
CVE-2014-0249 The System Security Services Daemon (SSSD) 1.11.6 does not properly identify group membership when a non-POSIX group is in a ... 3.3 - LOW 2014-06-11 2019-04-22
CVE-2013-0287 The Simple Access Provider in System Security Services Daemon (SSSD) 1.9.0 through 1.9.4, when the Active Directory provider ... 3.3 - LOW 2013-03-21 2023-02-13

