openSUSE-SU-2021:2941-1
Dashboard / Vulnerabilities / openSUSE-SU-2021:2941-1
openSUSE-SU-2021:2941-1
Summary: Security update for sssd
Details: This update for sssd fixes the following issues: - CVE-2021-3621: Fixed shell command injection in sssctl via the logs-fetch and cache-expire subcommands (bsc#1189492). - Add LDAPS support for the AD provider (bsc#1183735). - Improve logs to record the reason why internal watchdog terminates a process (bsc#1187120). - Fix watchdog not terminating tasks (bsc#1187120).
References: https://lists.opensuse.org/archives/list/[email protected]/thread/32JUFL2YE6SH6B4KF762VVSDUIQI7ZKU/, https://bugzilla.suse.com/1183735, https://bugzilla.suse.com/1187120, https://bugzilla.suse.com/1189492, https://www.suse.com/security/cve/CVE-2021-3621
Affected packages
Package
Name: sssd
Purl: pkg:rpm/opensuse/sssd&distro=openSUSE%20Leap%2015.3
Affected ranges
Type: ECOSYSTEM
Events:
