A flaw was found in sssd Group Policy Objects implementation. When the GPO is not readable by SSSD due to a too strict permission settings on the server side, SSSD will allow all authenticated users to login instead of denying access.
References
Configurations
History
No history.
Information
Published : 2019-03-25 18:29
Updated : 2023-05-29 17:15
NVD link : CVE-2018-16838
Mitre link : CVE-2018-16838
CVE.ORG link : CVE-2018-16838
JSON object : View
Products Affected
fedoraproject
- sssd
redhat
- enterprise_linux