Oval Definition:oval:org.opensuse.security:def:58572
Revision Date:2020-12-01Version:1
Title:Security update for sssd (Moderate)
Description:

This update for sssd provides the following fixes:

Security issues fixed:

- CVE-2017-12173: Fixed unsanitized input when searching in local cache database (bsc#1061832).

Non security issues fixed:

- Fixed a segfault issue in ldap_rfc_2307_fallback_to_local_users. (bsc#1055123) - Install /var/lib/sss/mc directory to correct sssd cache invalidation behaviour. (bsc#1039567)

Family:unixClass:patch
Status:Reference(s):1010845
1027519
1027565
1028103
1028372
1030573
1035371
1035807
1036457
1039567
1046848
1055123
1061832
1065386
1079600
1083125
1085447
1090368
1090646
1090869
1091107
1097108
1099306
1103203
1103276
1120114
1120115
1120116
1120117
1120118
1120119
1120120
1120121
1120122
1120489
1124937
1159646
1168630
1168874
1174633
1174635
1174638
CVE-2016-10244
CVE-2016-9401
CVE-2017-10672
CVE-2017-12173
CVE-2017-13166
CVE-2017-16612
CVE-2017-18344
CVE-2017-2636
CVE-2017-7184
CVE-2017-7864
CVE-2017-8105
CVE-2017-8287
CVE-2018-10853
CVE-2018-1087
CVE-2018-15126
CVE-2018-15127
CVE-2018-20019
CVE-2018-20020
CVE-2018-20021
CVE-2018-20022
CVE-2018-20023
CVE-2018-20024
CVE-2018-20217
CVE-2018-3646
CVE-2018-3646
CVE-2018-6307
CVE-2018-8781
CVE-2018-8897
CVE-2019-17571
CVE-2019-6212
CVE-2019-6215
CVE-2019-6216
CVE-2019-6217
CVE-2019-6226
CVE-2019-6227
CVE-2019-6229
CVE-2019-6233
CVE-2019-6234
CVE-2020-14345
CVE-2020-14346
CVE-2020-14347
CVE-2020-6819
CVE-2020-6820
CVE-2020-6821
CVE-2020-6822
CVE-2020-6825
CVE-2020-6827
CVE-2020-6828
SUSE-SU-2017:0864-1
SUSE-SU-2017:1317-1
SUSE-SU-2017:2937-1
SUSE-SU-2017:3214-1
SUSE-SU-2018:0123-1
SUSE-SU-2018:0414-1
SUSE-SU-2018:1548-1
SUSE-SU-2019:0111-1
SUSE-SU-2019:0511-1
SUSE-SU-2020:2331-1
Platform(s):openSUSE Leap 15.0
openSUSE Leap 15.1
SUSE Linux Enterprise Server 12 SP2
SUSE Linux Enterprise Server 12 SP2-BCL
SUSE Linux Enterprise Server 12 SP2-ESPOS
SUSE Linux Enterprise Server 12 SP2-LTSS
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-BCL
SUSE Linux Enterprise Server 12 SP3-ESPOS
SUSE Linux Enterprise Server 12 SP3-LTSS
SUSE Linux Enterprise Server 12 SP3-TERADATA
SUSE Linux Enterprise Server 12 SP4
SUSE OpenStack Cloud 8
SUSE OpenStack Cloud Crowbar 8
SUSE OpenStack Cloud Crowbar 9
Product(s):
Definition Synopsis
  • openSUSE Leap 15.0 is installed
  • AND Package Information
  • gdk-pixbuf-loader-rsvg-2.42.3-lp150.1 is installed
  • OR librsvg-2-2-2.42.3-lp150.1 is installed
  • OR rsvg-thumbnailer-2.42.3-lp150.1 is installed
  • OR typelib-1_0-Rsvg-2_0-2.42.3-lp150.1 is installed
  • Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • libBasicUsageEnvironment1-2019.06.28-lp151.2.3 is installed
  • OR libUsageEnvironment3-2019.06.28-lp151.2.3 is installed
  • OR libgroupsock8-2019.06.28-lp151.2.3 is installed
  • OR libliveMedia66-2019.06.28-lp151.2.3 is installed
  • OR live555-2019.06.28-lp151.2.3 is installed
  • OR live555-devel-2019.06.28-lp151.2.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2 is installed
  • AND Package Information
  • libipa_hbac0-1.13.4-34.7 is installed
  • OR libsss_idmap0-1.13.4-34.7 is installed
  • OR libsss_sudo-1.13.4-34.7 is installed
  • OR python-sssd-config-1.13.4-34.7 is installed
  • OR sssd-1.13.4-34.7 is installed
  • OR sssd-32bit-1.13.4-34.7 is installed
  • OR sssd-ad-1.13.4-34.7 is installed
  • OR sssd-ipa-1.13.4-34.7 is installed
  • OR sssd-krb5-1.13.4-34.7 is installed
  • OR sssd-krb5-common-1.13.4-34.7 is installed
  • OR sssd-ldap-1.13.4-34.7 is installed
  • OR sssd-proxy-1.13.4-34.7 is installed
  • OR sssd-tools-1.13.4-34.7 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-BCL is installed
  • AND Package Information
  • krb5-1.12.5-40.31 is installed
  • OR krb5-32bit-1.12.5-40.31 is installed
  • OR krb5-client-1.12.5-40.31 is installed
  • OR krb5-doc-1.12.5-40.31 is installed
  • OR krb5-plugin-kdb-ldap-1.12.5-40.31 is installed
  • OR krb5-plugin-preauth-otp-1.12.5-40.31 is installed
  • OR krb5-plugin-preauth-pkinit-1.12.5-40.31 is installed
  • OR krb5-server-1.12.5-40.31 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
  • AND Package Information
  • xen-4.7.6_04-43.39 is installed
  • OR xen-doc-html-4.7.6_04-43.39 is installed
  • OR xen-libs-4.7.6_04-43.39 is installed
  • OR xen-libs-32bit-4.7.6_04-43.39 is installed
  • OR xen-tools-4.7.6_04-43.39 is installed
  • OR xen-tools-domU-4.7.6_04-43.39 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-LTSS is installed
  • AND Package Information
  • kgraft-patch-4_4_90-92_45-default-7-2 is installed
  • OR kgraft-patch-SLE12-SP2_Update_14-7-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND apache2-mod_perl-2.0.8-11 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-BCL is installed
  • AND Package Information
  • libjavascriptcoregtk-4_0-18-2.24.4-2.47 is installed
  • OR libwebkit2gtk-4_0-37-2.24.4-2.47 is installed
  • OR typelib-1_0-JavaScriptCore-4_0-2.24.4-2.47 is installed
  • OR typelib-1_0-WebKit2-4_0-2.24.4-2.47 is installed
  • OR webkit2gtk-4_0-injected-bundles-2.24.4-2.47 is installed
  • OR webkit2gtk3-2.24.4-2.47 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
  • AND squid-3.5.21-26.32 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-LTSS is installed
  • AND Package Information
  • kgraft-patch-4_4_156-94_64-default-7-2 is installed
  • OR kgraft-patch-SLE12-SP3_Update_20-7-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
  • AND Package Information
  • libtiff5-4.0.9-44.24 is installed
  • OR libtiff5-32bit-4.0.9-44.24 is installed
  • OR tiff-4.0.9-44.24 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND Package Information
  • libgcrypt20-1.6.1-16.61 is installed
  • OR libgcrypt20-32bit-1.6.1-16.61 is installed
  • OR libgcrypt20-hmac-1.6.1-16.61 is installed
  • OR libgcrypt20-hmac-32bit-1.6.1-16.61 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 8 is installed
  • AND mailman-2.1.17-3.20 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND Package Information
  • java-1_8_0-ibm-1.8.0_sr6.10-30.69 is installed
  • OR java-1_8_0-ibm-alsa-1.8.0_sr6.10-30.69 is installed
  • OR java-1_8_0-ibm-devel-1.8.0_sr6.10-30.69 is installed
  • OR java-1_8_0-ibm-plugin-1.8.0_sr6.10-30.69 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 9 is installed
  • AND Package Information
  • mariadb-10.2.29-3.22 is installed
  • OR mariadb-galera-10.2.29-3.22 is installed
  • BACK