sssd: privilege escalation
| Package(s): | sssd | CVE #(s): | CVE-2009-2410 | ||||
| Created: | July 30, 2009 | Updated: | August 5, 2009 | ||||
| Description: | From the Fedora alert: If a user was added to the SSSD BE database without setting a password, the user could ssh to the SSSD configured client and enter any password to gain access. This update resolves this issue so users with no password set are no longer able to login. | ||||||
| Alerts: |
| ||||||
