ELSA-2023-0403

ELSA-2023-0403 - sssd security and bug fix update

Type:SECURITY
Severity:IMPORTANT
Release Date:2023-01-24

Description


[1.16.5-10.0.3]
- Revert Redhat's change of disallowing duplicated incomplete gid
when 'id_provider=ldap' is used, which caused regression in AD
environment. [Orabug: 29286774] [Doc ID 2605732.1]

[1.16.5-10.15]
- Resolves: rhbz#2149703 - smartcards: special characters must be escaped when building search filter [rhel-7.9.z]
- Resolves: rhbz#2149902 - EMBARGOED CVE-2022-4254 sssd: libsss_certmap fails to sanitise certificate data used in LDAP filters [rhel-7.9.z]


Related CVEs


CVE-2022-4254

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 7 (aarch64) sssd-1.16.5-10.0.3.el7_9.15.src.rpma32cc1ee4352d6dbb7391b137bfd478d-
libipa_hbac-1.16.5-10.0.3.el7_9.15.aarch64.rpm2f5d68f73676f71001692f4b1c7e15bf-
libipa_hbac-devel-1.16.5-10.0.3.el7_9.15.aarch64.rpme48d81ac738d25e47093d461348216b2-
libsss_autofs-1.16.5-10.0.3.el7_9.15.aarch64.rpm183b3bb1a85e704c714ed5f80b9348cb-
libsss_certmap-1.16.5-10.0.3.el7_9.15.aarch64.rpm46bfb4a46c63a0df35293425299bf198-
libsss_certmap-devel-1.16.5-10.0.3.el7_9.15.aarch64.rpmfe596cb80e9837c69f85c0456ac2d236-
libsss_idmap-1.16.5-10.0.3.el7_9.15.aarch64.rpma431b5e89d50b704937d244929da7bf0-
libsss_idmap-devel-1.16.5-10.0.3.el7_9.15.aarch64.rpm0fae9cff1fdc45050769989d82795835-
libsss_nss_idmap-1.16.5-10.0.3.el7_9.15.aarch64.rpm4eb1f064ef18f962f6ed6d0718dd7c1c-
libsss_nss_idmap-devel-1.16.5-10.0.3.el7_9.15.aarch64.rpm6e89ea75c87010321fc2c026685bb01c-
libsss_simpleifp-1.16.5-10.0.3.el7_9.15.aarch64.rpm5e67c2927754ffbe0511ed5b87f81b0a-
libsss_simpleifp-devel-1.16.5-10.0.3.el7_9.15.aarch64.rpm6cbf8631f5265fd7726eaf00783b026f-
libsss_sudo-1.16.5-10.0.3.el7_9.15.aarch64.rpm050a2ddb756d7e4fb2314227f3e41893-
python-libipa_hbac-1.16.5-10.0.3.el7_9.15.aarch64.rpmf5c1f18a31162cd492bb6127bebf91dd-
python-libsss_nss_idmap-1.16.5-10.0.3.el7_9.15.aarch64.rpmdcb3df1d2b9eb5ec195cdbdabaff36dc-
python-sss-1.16.5-10.0.3.el7_9.15.aarch64.rpm1135ae6031980a5fd7e075fd36d5e339-
python-sss-murmur-1.16.5-10.0.3.el7_9.15.aarch64.rpmda50a9927617d220d59e4e5d5239b662-
python-sssdconfig-1.16.5-10.0.3.el7_9.15.noarch.rpmdc25ece6c7b8657c328cd906f50e3ee4-
sssd-1.16.5-10.0.3.el7_9.15.aarch64.rpm9a5c65507107fbbda51376353b8f0e0a-
sssd-ad-1.16.5-10.0.3.el7_9.15.aarch64.rpmd403dd303a1fd19ccf31b5f8ecb14163-
sssd-client-1.16.5-10.0.3.el7_9.15.aarch64.rpm2160a39c35b650d32146472aee471131-
sssd-common-1.16.5-10.0.3.el7_9.15.aarch64.rpmb9066e2c8db0c8b477ca42f8b74da6a2-
sssd-common-pac-1.16.5-10.0.3.el7_9.15.aarch64.rpmaf905c28bf1a316c6fc47073d5c9e996-
sssd-dbus-1.16.5-10.0.3.el7_9.15.aarch64.rpm99ce83f267e0647a368951e99a6b0cc5-
sssd-ipa-1.16.5-10.0.3.el7_9.15.aarch64.rpm3783b3f392e2a0b101020e08b4da2bdd-
sssd-kcm-1.16.5-10.0.3.el7_9.15.aarch64.rpm18308dcb8119c06e565087dedbbc9316-
sssd-krb5-1.16.5-10.0.3.el7_9.15.aarch64.rpm83f77aad6b39ee0380c6b95f2e40647f-
sssd-krb5-common-1.16.5-10.0.3.el7_9.15.aarch64.rpm32ae3cabfebcec52ac7edc38204f8895-
sssd-ldap-1.16.5-10.0.3.el7_9.15.aarch64.rpm4c331265110151feb5b680d5311642bb-
sssd-libwbclient-1.16.5-10.0.3.el7_9.15.aarch64.rpmcc8f5b7a5572db8353d1cf8186b96fc4-
sssd-libwbclient-devel-1.16.5-10.0.3.el7_9.15.aarch64.rpm1663d1a95dda93d628a2169b4eade094-
sssd-polkit-rules-1.16.5-10.0.3.el7_9.15.aarch64.rpm121c4ef6b80d072dd302bcfa75260ea0-
sssd-proxy-1.16.5-10.0.3.el7_9.15.aarch64.rpme02de7484144424c793e2ab2efdb755f-
sssd-tools-1.16.5-10.0.3.el7_9.15.aarch64.rpm5352cb37b08201f41137a6b05d101e72-
sssd-winbind-idmap-1.16.5-10.0.3.el7_9.15.aarch64.rpmcff33ff528bf5309ff3e531da132e136-
Oracle Linux 7 (x86_64) sssd-1.16.5-10.0.3.el7_9.15.src.rpma32cc1ee4352d6dbb7391b137bfd478d-
libipa_hbac-1.16.5-10.0.3.el7_9.15.i686.rpm0320d869ad999c25ba10a1f31794f730-
libipa_hbac-1.16.5-10.0.3.el7_9.15.x86_64.rpmd9d9726f5c0f716a4435d37c2ac31b38-
libipa_hbac-devel-1.16.5-10.0.3.el7_9.15.i686.rpmb652ed3d0f8d4baa4cfe68ab36dc8d05-
libipa_hbac-devel-1.16.5-10.0.3.el7_9.15.x86_64.rpm9c247e51954b51f7839051147f6a5182-
libsss_autofs-1.16.5-10.0.3.el7_9.15.x86_64.rpm9024420a0a0da9d42a3b5005e4ba7009-
libsss_certmap-1.16.5-10.0.3.el7_9.15.i686.rpm00bebc5fe7cb7112b69f276ad0d974ed-
libsss_certmap-1.16.5-10.0.3.el7_9.15.x86_64.rpm32e36296a8a802f4d3733c3be4b23263-
libsss_certmap-devel-1.16.5-10.0.3.el7_9.15.i686.rpm542b52e6cdfbb6b9d45e185291dcfbf7-
libsss_certmap-devel-1.16.5-10.0.3.el7_9.15.x86_64.rpmeb46a0656a9b2dfeaef01e73d5bf125b-
libsss_idmap-1.16.5-10.0.3.el7_9.15.i686.rpm0dd9b72ff05c8d67bfc1da8401dca91f-
libsss_idmap-1.16.5-10.0.3.el7_9.15.x86_64.rpm30847a917987f56ee0904f0489db213b-
libsss_idmap-devel-1.16.5-10.0.3.el7_9.15.i686.rpm40e33a52fe52b2f649170ed691b289d7-
libsss_idmap-devel-1.16.5-10.0.3.el7_9.15.x86_64.rpm08f993ff70ffd6779b99ab962d21fbe0-
libsss_nss_idmap-1.16.5-10.0.3.el7_9.15.i686.rpmcc67cd95128cdf2dae54e3bab5b7b091-
libsss_nss_idmap-1.16.5-10.0.3.el7_9.15.x86_64.rpm938888ee64b54e0e1da653f8f34d97ce-
libsss_nss_idmap-devel-1.16.5-10.0.3.el7_9.15.i686.rpm1894a7349cf40094cb11f909835786fd-
libsss_nss_idmap-devel-1.16.5-10.0.3.el7_9.15.x86_64.rpm3498922ef20e9597899084002f4c7758-
libsss_simpleifp-1.16.5-10.0.3.el7_9.15.i686.rpmb8400dbafcae4264378f5dd5a917549d-
libsss_simpleifp-1.16.5-10.0.3.el7_9.15.x86_64.rpm33985eae6373e4c1e38c224c095d4e9d-
libsss_simpleifp-devel-1.16.5-10.0.3.el7_9.15.i686.rpmcff74e99e3c8bf6605d5a018b6a74144-
libsss_simpleifp-devel-1.16.5-10.0.3.el7_9.15.x86_64.rpm4d892d866cb211d753942beeb3ad71fa-
libsss_sudo-1.16.5-10.0.3.el7_9.15.x86_64.rpm662f7dd044d83a45f98b09339da9d5ca-
python-libipa_hbac-1.16.5-10.0.3.el7_9.15.x86_64.rpmfb3819ebb18ec520de53b55fa7fd9460-
python-libsss_nss_idmap-1.16.5-10.0.3.el7_9.15.x86_64.rpm0f04872fb328da51c5dd71b4d39bcb49-
python-sss-1.16.5-10.0.3.el7_9.15.x86_64.rpmeaf71a90bd11df007148c10b52713f07-
python-sss-murmur-1.16.5-10.0.3.el7_9.15.x86_64.rpm066faaa4977352f8922124684ed3ec1f-
python-sssdconfig-1.16.5-10.0.3.el7_9.15.noarch.rpmdc25ece6c7b8657c328cd906f50e3ee4-
sssd-1.16.5-10.0.3.el7_9.15.x86_64.rpm6115fde3c2879eea89d9e5b476d7a9b6-
sssd-ad-1.16.5-10.0.3.el7_9.15.x86_64.rpmadaa5c5d3b5a40b28f5ffdf56f761758-
sssd-client-1.16.5-10.0.3.el7_9.15.i686.rpmb4e05ebe52023347205663f1e3b6bec0-
sssd-client-1.16.5-10.0.3.el7_9.15.x86_64.rpm701b7a4ca1821d125e8cf3aea26ab34b-
sssd-common-1.16.5-10.0.3.el7_9.15.x86_64.rpme20208595d1e841252e29d76271627e8-
sssd-common-pac-1.16.5-10.0.3.el7_9.15.x86_64.rpm785703a3d562b201c7b80c00d60e9b6f-
sssd-dbus-1.16.5-10.0.3.el7_9.15.x86_64.rpmea2ed887de2dbad1a01bba05d5db2961-
sssd-ipa-1.16.5-10.0.3.el7_9.15.x86_64.rpm881915ee385d3eb79d39fbc3dab25469-
sssd-kcm-1.16.5-10.0.3.el7_9.15.x86_64.rpm732c02219217f929daf841331ff2c74c-
sssd-krb5-1.16.5-10.0.3.el7_9.15.x86_64.rpma4f6b0c4e96d9077c24922fc11bdfda7-
sssd-krb5-common-1.16.5-10.0.3.el7_9.15.x86_64.rpma348d42c5b4ac681e32cb5a3b6eabd0b-
sssd-ldap-1.16.5-10.0.3.el7_9.15.x86_64.rpma6d4561097f630a93cdec15832466b7c-
sssd-libwbclient-1.16.5-10.0.3.el7_9.15.x86_64.rpmafbf239ea370219f389c5eb50d6f8b65-
sssd-libwbclient-devel-1.16.5-10.0.3.el7_9.15.i686.rpmbabd44aa22eb7db72d0aa9023e7536c2-
sssd-libwbclient-devel-1.16.5-10.0.3.el7_9.15.x86_64.rpm02bfbcae4c79c2164dd2c8a277676ab2-
sssd-polkit-rules-1.16.5-10.0.3.el7_9.15.x86_64.rpm2d5811321e2599d70eb42f5951535823-
sssd-proxy-1.16.5-10.0.3.el7_9.15.x86_64.rpm1fa8b318d3ee985cbcb2cdf539e264dc-
sssd-tools-1.16.5-10.0.3.el7_9.15.x86_64.rpmffe1d746c5bb9983aa22ee29484e77a9-
sssd-winbind-idmap-1.16.5-10.0.3.el7_9.15.x86_64.rpm792a8e5c2fbe0cfa4a145d5f379df77f-



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete