ELSA-2021-3151

ELSA-2021-3151 - sssd security update

Type:SECURITY
Severity:IMPORTANT
Release Date:2021-08-17

Description


[2.4.0-9.0.1]
- Restore default debug level for sss_cache [Orabug: 32810448]
- Restore default debug level for shadow-utils tools [Orabug: 32810448]
- Revert Redhat's change of disallowing duplicated incomplete gid
when 'id_provider=ldap' is used, which caused regression in AD
environment. [Orabug: 29286774] [Doc ID 2605732.1]

[2.4.0-9.2]
- Resolves: rhbz#1985456 - EMBARGOED CVE-2021-3621 sssd: shell command injection in sssctl [rhel-8.4.0.z]


Related CVEs


CVE-2021-3621

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 8 (aarch64) sssd-2.4.0-9.0.1.el8_4.2.src.rpmabb5928b000b5749cb126514d19a69e4-
libipa_hbac-2.4.0-9.0.1.el8_4.2.aarch64.rpm9ac8f59844eabc6019adf15d232a6c04-
libsss_autofs-2.4.0-9.0.1.el8_4.2.aarch64.rpmac76f7bf03f391a63d88b0bbb137b209-
libsss_certmap-2.4.0-9.0.1.el8_4.2.aarch64.rpm8e780cb2aa870884bb48e6969b10b97c-
libsss_idmap-2.4.0-9.0.1.el8_4.2.aarch64.rpma850234e9420e40d90ee6f9926539098-
libsss_nss_idmap-2.4.0-9.0.1.el8_4.2.aarch64.rpme07ae80450c9abde851c9572c8c93eaf-
libsss_nss_idmap-devel-2.4.0-9.0.1.el8_4.2.aarch64.rpm166de6cd1f42d8ec045398f43ba492e5-
libsss_simpleifp-2.4.0-9.0.1.el8_4.2.aarch64.rpm60f3d4b49fd3f7e6c07637a4d13599df-
libsss_sudo-2.4.0-9.0.1.el8_4.2.aarch64.rpmde449280a7d794e39a189ef8aa8d2f64-
python3-libipa_hbac-2.4.0-9.0.1.el8_4.2.aarch64.rpmd9cb68d9261fcd5b0b9c8df35ba1560a-
python3-libsss_nss_idmap-2.4.0-9.0.1.el8_4.2.aarch64.rpm62d49e66fb6fe4aa0b34e80acc39be71-
python3-sss-2.4.0-9.0.1.el8_4.2.aarch64.rpm15cbe792f5d318dc256c87d237fa8ea4-
python3-sss-murmur-2.4.0-9.0.1.el8_4.2.aarch64.rpm8474a5368df25c6791593a2db706060d-
python3-sssdconfig-2.4.0-9.0.1.el8_4.2.noarch.rpm6d23e06f495b47180cae8a702d04e409-
sssd-2.4.0-9.0.1.el8_4.2.aarch64.rpm13bf167cdd4ce25c80200d6ac184ed20-
sssd-ad-2.4.0-9.0.1.el8_4.2.aarch64.rpm6fe297690829be6d5374362a359b70b2-
sssd-client-2.4.0-9.0.1.el8_4.2.aarch64.rpm46a41a6d782f23f99bb9b581d8714a9b-
sssd-common-2.4.0-9.0.1.el8_4.2.aarch64.rpm159ac81d44da323dec2610f5babba53c-
sssd-common-pac-2.4.0-9.0.1.el8_4.2.aarch64.rpm84b67acd8a2012c137f94417ccffe149-
sssd-dbus-2.4.0-9.0.1.el8_4.2.aarch64.rpm31b4c36882ae474657087300c146e83f-
sssd-ipa-2.4.0-9.0.1.el8_4.2.aarch64.rpm2ab0bdb2abee190050fcc62568599f18-
sssd-kcm-2.4.0-9.0.1.el8_4.2.aarch64.rpmc496fd11d02bd52054b835774d6ba5fe-
sssd-krb5-2.4.0-9.0.1.el8_4.2.aarch64.rpm2b51071304ba0e38eb3e439e59b360ce-
sssd-krb5-common-2.4.0-9.0.1.el8_4.2.aarch64.rpm3ba078d6e18d0e029df7404389273f56-
sssd-ldap-2.4.0-9.0.1.el8_4.2.aarch64.rpm33e24dd379bb1a4ac92b4d12f2f468cf-
sssd-libwbclient-2.4.0-9.0.1.el8_4.2.aarch64.rpm0c53fa0e04838f30297e12218aa2b541-
sssd-nfs-idmap-2.4.0-9.0.1.el8_4.2.aarch64.rpm914330749adb68d5dc94280565da82e5-
sssd-polkit-rules-2.4.0-9.0.1.el8_4.2.aarch64.rpma530c00d1f36078a12e2c97634ccb419-
sssd-proxy-2.4.0-9.0.1.el8_4.2.aarch64.rpm68a424b5694ea9b27d093224d412614d-
sssd-tools-2.4.0-9.0.1.el8_4.2.aarch64.rpmfd130ca149c0123464aa82a389716f72-
sssd-winbind-idmap-2.4.0-9.0.1.el8_4.2.aarch64.rpm37954850f20eae8bc1454c042af692b9-
Oracle Linux 8 (x86_64) sssd-2.4.0-9.0.1.el8_4.2.src.rpmabb5928b000b5749cb126514d19a69e4-
libipa_hbac-2.4.0-9.0.1.el8_4.2.i686.rpm8ee2265305f870224a3979160291b636-
libipa_hbac-2.4.0-9.0.1.el8_4.2.x86_64.rpm636fb6fc04edd299bad82b193bdd0aee-
libsss_autofs-2.4.0-9.0.1.el8_4.2.x86_64.rpm00eb2239620b66b479ea6871fd2d9e5c-
libsss_certmap-2.4.0-9.0.1.el8_4.2.i686.rpm7d4b1b286fa6a76e6c3be5eb34a91448-
libsss_certmap-2.4.0-9.0.1.el8_4.2.x86_64.rpm51a082915f7c2680e40a7d237065066a-
libsss_idmap-2.4.0-9.0.1.el8_4.2.i686.rpm98aabc4c6fa5f2e0f3f214a82606f3a1-
libsss_idmap-2.4.0-9.0.1.el8_4.2.x86_64.rpm45c5a109313c30c94401bf4d61c5a9c7-
libsss_nss_idmap-2.4.0-9.0.1.el8_4.2.i686.rpm233e63cab6d9e24ad7c42ef43764d649-
libsss_nss_idmap-2.4.0-9.0.1.el8_4.2.x86_64.rpm2622b0303fa9f38756027f638616ba8b-
libsss_nss_idmap-devel-2.4.0-9.0.1.el8_4.2.i686.rpm10e9096660619acc317b28788ac5f833-
libsss_nss_idmap-devel-2.4.0-9.0.1.el8_4.2.x86_64.rpmd873701d0fb7b6845e9788f2ce3f0fc6-
libsss_simpleifp-2.4.0-9.0.1.el8_4.2.i686.rpm5fe3ef37c44dcb540f944ab706c84070-
libsss_simpleifp-2.4.0-9.0.1.el8_4.2.x86_64.rpm403a064de29bcf2981ee61b15e3b773a-
libsss_sudo-2.4.0-9.0.1.el8_4.2.x86_64.rpm25ee5fc2d17746fa0cad45e21a29bdc2-
python3-libipa_hbac-2.4.0-9.0.1.el8_4.2.x86_64.rpm3916f7a4df0e2a9d239ee158ff392411-
python3-libsss_nss_idmap-2.4.0-9.0.1.el8_4.2.x86_64.rpmaf661ac247e3fc2054db63da732e4035-
python3-sss-2.4.0-9.0.1.el8_4.2.x86_64.rpm373779c40ed3b25e65903a418353d6a5-
python3-sss-murmur-2.4.0-9.0.1.el8_4.2.x86_64.rpmc0f2888b1a1579bc2e2a02294fc5533f-
python3-sssdconfig-2.4.0-9.0.1.el8_4.2.noarch.rpm6d23e06f495b47180cae8a702d04e409-
sssd-2.4.0-9.0.1.el8_4.2.x86_64.rpmdbb6c6b36a7c3481a86092103e185a94-
sssd-ad-2.4.0-9.0.1.el8_4.2.x86_64.rpmb71ea933b1a11d181ac355775215d7c1-
sssd-client-2.4.0-9.0.1.el8_4.2.i686.rpm764de0c227b57060b760a759dbed2819-
sssd-client-2.4.0-9.0.1.el8_4.2.x86_64.rpm6d04326a08864a622a8a14c71fb9cb58-
sssd-common-2.4.0-9.0.1.el8_4.2.x86_64.rpma7b861c6553f359b1443e8c24d9f42f5-
sssd-common-pac-2.4.0-9.0.1.el8_4.2.x86_64.rpmaab4d4607ef586cd5fe013cf48dd96f4-
sssd-dbus-2.4.0-9.0.1.el8_4.2.x86_64.rpmc56526eeeea5f4577f78258a41c7c45b-
sssd-ipa-2.4.0-9.0.1.el8_4.2.x86_64.rpmbe9674061395722c62c96ccf906af48e-
sssd-kcm-2.4.0-9.0.1.el8_4.2.x86_64.rpm02711dcd58d4e4b21f2f762eab4616ff-
sssd-krb5-2.4.0-9.0.1.el8_4.2.x86_64.rpm1d39d08d6f2785ab51bf75accfc97bec-
sssd-krb5-common-2.4.0-9.0.1.el8_4.2.x86_64.rpmc138ece3d952b9fe741fd42cb12688a9-
sssd-ldap-2.4.0-9.0.1.el8_4.2.x86_64.rpmaca4e1f3794010f729c8ad685c1ae860-
sssd-libwbclient-2.4.0-9.0.1.el8_4.2.x86_64.rpm8056735237217fcc74c5a3bfd91c910c-
sssd-nfs-idmap-2.4.0-9.0.1.el8_4.2.x86_64.rpmd5199acb1684ab3f294302792d77d729-
sssd-polkit-rules-2.4.0-9.0.1.el8_4.2.x86_64.rpm4e3c87c03686c24646a23f08f5911986-
sssd-proxy-2.4.0-9.0.1.el8_4.2.x86_64.rpm6a47c2e339f36438e422e761c6146dd8-
sssd-tools-2.4.0-9.0.1.el8_4.2.x86_64.rpma95425340362ec82c037405c5cfbaf6b-
sssd-winbind-idmap-2.4.0-9.0.1.el8_4.2.x86_64.rpm6eb92ec5436357e240d12c74e2109400-



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete