Total vulnerabilities in the database
The krb5_save_ccname_done function in providers/krb5/krb5_auth.c in System Security Services Daemon (SSSD) 1.5.x before 1.5.7, when automatic ticket renewal and offline authentication are configured, uses a pathname string as a password, which allows local users to bypass Kerberos authentication by listing the /tmp directory to obtain the pathname.
Software | From | Fixed in |
---|---|---|
fedoraproject / sssd | 1.5.2 | 1.5.2.x |
fedoraproject / sssd | 1.5.0 | 1.5.0.x |
fedoraproject / sssd | 1.5.5 | 1.5.5.x |
fedoraproject / sssd | 1.5.6.1 | 1.5.6.1.x |
fedoraproject / sssd | 1.5.3 | 1.5.3.x |
fedoraproject / sssd | 1.5.1 | 1.5.1.x |
fedoraproject / sssd | 1.5.6 | 1.5.6.x |
fedoraproject / sssd | 1.5.4 | 1.5.4.x |