[Forgot Password]
Login  Register Subscribe

30430

 
 

423868

 
 

247768

 
 

909

 
 

194555

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

ELSA-2015-2355 -- Oracle sssd

ID: oval:org.secpod.oval:def:1501258Date: (C)2016-02-23   (M)2023-07-28
Class: PATCHFamily: unix




Memory leak in the Privilege Attribute Certificate (PAC) responder plugin (sssd_pac_plugin.so) in System Security Services Daemon (SSSD) 1.10 before 1.13.1 allows remote authenticated users to cause a denial of service (memory consumption) via a large number of logins that trigger parsing of PAC blobs during Kerberos authentication.

Platform:
Oracle Linux 7
Product:
sssd
Reference:
ELSA-2015-2355
CVE-2015-5292
CVE    1
CVE-2015-5292
CPE    2
cpe:/a:sssd:sssd
cpe:/o:oracle:linux:7

© SecPod Technologies