SUSE-SU-2022:1258-1
Dashboard / Vulnerabilities / SUSE-SU-2022:1258-1
SUSE-SU-2022:1258-1
Summary: Security update for sssd
Details: This update for sssd fixes the following issues: - CVE-2021-3621: Fixed shell command injection in sssctl via the logs-fetch and cache-expire subcommands (bsc#1189492). - Add LDAPS support for the AD provider (bsc#1183735)(jsc#SLE-17773). Non-security fixes: - Fixed a crash caused by calling dbus_watch_handle with a corrupted memory value (bsc#1196564).
References: https://www.suse.com/support/update/announcement/2022/suse-su-20221258-1/, https://bugzilla.suse.com/1183735, https://bugzilla.suse.com/1189492, https://bugzilla.suse.com/1196564, https://www.suse.com/security/cve/CVE-2021-3621
Affected packages
Package
Name: sssd
Purl: pkg:rpm/suse/sssd&distro=SUSE%20OpenStack%20Cloud%209
Affected ranges
Type: ECOSYSTEM
Events:
