Description
A flaw was found in sssd. This vulnerability allows a local user to cause a Denial of Service (DoS) by submitting a specially crafted passkey authentication token that lacks null terminators. The authentication service reads past the end of the provided memory buffer, causing the process to crash and disrupting authentication services.
Published: 2026-10-05
Score: 5.5 Medium
EPSS: n/a
KEV: No
Impact: Denial of Service
Action: Monitor
AI Analysis

Impact

A flaw in the System Security Services Daemon allows a local user to trigger a denial of service by submitting a specially crafted passkey authentication token without null terminators. The library reads past the end of the supplied memory buffer, leading to a crash of the authentication process and a disruption of authentication services. The weakness is a classic out‑of‑bounds read identified as CWE‑125.

Affected Systems

This issue affects Red Hat products including Red Hat Enterprise Linux versions 6 through 10 and Red Hat OpenShift Container Platform 4. Specific patch numbers and version ranges are not disclosed in the current data, so any system running these products with the vulnerable sssd component should be considered at risk.

Risk and Exploitability

The CVSS score of 5.5 indicates moderate severity. No EPSS value is provided and the vulnerability is not listed in the CISA KEV catalog, suggesting limited public exploitation evidence. However, the flaw is exploitable locally and does not require network access, so any user with privileges to submit authentication tokens can trigger the crash. The local nature and lack of remote execution make it a denial‑of‑service weakness rather than an elevation or data‑exfiltration risk.

Generated by OpenCVE AI on October 5, 2026 at 20:21 UTC.

Remediation

Vendor Workaround

Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base, or stability.


OpenCVE Recommended Actions

  • Check for and apply the most recent Red Hat security update that includes the sssd fix once released.
  • If a patch is not yet available, restrict the use of passkey authentication or configure the system to reject malformed tokens until a fix arrives.
  • Restart the sssd service after any configuration changes to ensure the new settings take effect and verify that authentication continues to function.

Generated by OpenCVE AI on October 5, 2026 at 20:21 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Mon, 05 Oct 2026 19:30:00 +0000

Type Values Removed Values Added
Description A flaw was found in sssd. This vulnerability allows a local user to cause a Denial of Service (DoS) by submitting a specially crafted passkey authentication token that lacks null terminators. The authentication service reads past the end of the provided memory buffer, causing the process to crash and disrupting authentication services.
Title Sssd: sssd: denial of service via out-of-bounds read during passkey parsing
First Time appeared Redhat
Redhat enterprise Linux
Redhat openshift
Weaknesses CWE-125
CPEs cpe:/a:redhat:openshift:4
cpe:/o:redhat:enterprise_linux:10
cpe:/o:redhat:enterprise_linux:6
cpe:/o:redhat:enterprise_linux:7
cpe:/o:redhat:enterprise_linux:8
cpe:/o:redhat:enterprise_linux:9
Vendors & Products Redhat
Redhat enterprise Linux
Redhat openshift
References
Metrics cvssV3_1

{'score': 5.5, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H'}


Subscriptions

Redhat Enterprise Linux Openshift
cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published:

Updated: 2026-10-05T19:07:33.481Z

Reserved: 2026-10-01T17:20:01.039Z

Link: CVE-2026-104030

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-10-05T20:17:08.637

Modified: 2026-10-05T20:17:08.637

Link: CVE-2026-104030

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-10-05T20:30:22Z

Weaknesses