A flaw was found in sudo in the handling of ipa_hostname, where ipa_hostname from /etc/sssd/sssd.conf was not propagated in sudo. Therefore, it leads to privilege mismanagement vulnerability in applications, where client hosts retain privileges even after retracting them.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published: 2023-12-23T22:33:13.530Z

Updated: 2024-08-02T08:50:07.937Z

Reserved: 2023-12-23T19:25:33.533Z

Link: CVE-2023-7090

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2023-12-23T23:15:07.560

Modified: 2024-02-08T10:15:13.540

Link: CVE-2023-7090

cve-icon Redhat

Severity : Moderate

Publid Date: 2019-08-15T00:00:00Z

Links: CVE-2023-7090 - Bugzilla