Description
sssd versions from 1.13.0 to before 2.0.0 did not properly restrict access to the infopipe according to the "allowed_uids" configuration parameter. If sensitive information were stored in the user directory, this could be inadvertently disclosed to local attackers.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2018-8673 | sssd versions from 1.13.0 to before 2.0.0 did not properly restrict access to the infopipe according to the "allowed_uids" configuration parameter. If sensitive information were stored in the user directory, this could be inadvertently disclosed to local attackers. |
References
History
No history.
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-05T10:32:54.202Z
Reserved: 2018-09-11T00:00:00.000Z
Link: CVE-2018-16883
No data.
Status : Modified
Published: 2018-12-19T14:29:00.283
Modified: 2024-11-21T03:53:31.620
Link: CVE-2018-16883
OpenCVE Enrichment
No data.
Weaknesses
EUVD