CVE-2010-0014
published 2010-01-14CVE-2010-0014: System Security Services Daemon (SSSD) before 1.0.1, when the krb5 auth_provider is configured but the KDC is unreachable, allows physically proximate…
PriorityP419low3.7CVSS 2.0
AVLACHAuNCPIPAP
EPSS
0.69%
48.6th percentile
System Security Services Daemon (SSSD) before 1.0.1, when the krb5 auth_provider is configured but the KDC is unreachable, allows physically proximate attackers to authenticate, via an arbitrary password, to the screen-locking program on a workstation that has any user's Kerberos ticket-granting ticket (TGT); and might allow remote attackers to bypass intended access restrictions via vectors involving an arbitrary password in conjunction with a valid TGT.
Affected
20 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | sssd | < sssd 1.0.5-1 (bookworm) | sssd 1.0.5-1 (bookworm) |
| fedoraproject | sssd | <= 1.0.0 | — |
| fedoraproject | sssd | — | — |
| fedoraproject | sssd | — | — |
| fedoraproject | sssd | — | — |
| fedoraproject | sssd | — | — |
| fedoraproject | sssd | — | — |
| fedoraproject | sssd | — | — |
| fedoraproject | sssd | — | — |
| fedoraproject | sssd | — | — |
| fedoraproject | sssd | — | — |
| fedoraproject | sssd | — | — |
| fedoraproject | sssd | — | — |
| fedoraproject | sssd | — | — |
| fedoraproject | sssd | — | — |
| fedoraproject | sssd | — | — |
| fedoraproject | sssd | >= 0 < 1.0.5-1 | 1.0.5-1 |
| fedoraproject | sssd | >= 0 < 1.0.5-1 | 1.0.5-1 |
| fedoraproject | sssd | >= 0 < 1.0.5-1 | 1.0.5-1 |
| fedoraproject | sssd | >= 0 < 1.0.5-1 | 1.0.5-1 |
CVSS provenance
nvdv2.03.7LOWAV:L/AC:H/Au:N/C:P/I:P/A:P
osv3.7LOW
vendor_debian3.7LOW
vendor_redhat3.7LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
VMware
VMware Workstation, Player, and ACE address several security issues.
vendor_vmware·2010-09-23·CVSS 2.1
CVE-2010-0205 [LOW] VMware Workstation, Player, and ACE address several security issues.
VMSA-2010-0014: VMware Workstation, Player, and ACE address several security issues.
a. VMware Workstation and Player installer security issue The Workstation 7.x and Player 3.x installers will load an index.htm file located in the current working directory on which Workstation 7.x or Player 3.x is being installed. This may allow an attacker to display a malicious file if they manage to get their file onto the system prior to installation. The issue can only be exploited at the time that Workstation 7.x or Player 3.x is being installed. Installed versions of Workstation and Player are not affected. The security issue is no longer present in the installer of the new versions of Workstation 7.x and Player 3.x (see table below for the version numbers). The Common Vulnerabilities and Exposure
Red Hat
SSSD accepts any password when offline with a valid TGT available
vendor_redhat·2010-01-11·CVSS 3.7
CVE-2010-0014 [LOW] SSSD accepts any password when offline with a valid TGT available
SSSD accepts any password when offline with a valid TGT available
System Security Services Daemon (SSSD) before 1.0.1, when the krb5 auth_provider is configured but the KDC is unreachable, allows physically proximate attackers to authenticate, via an arbitrary password, to the screen-locking program on a workstation that has any user's Kerberos ticket-granting ticket (TGT); and might allow remote attackers to bypass intended access restrictions via vectors involving an arbitrary password in conjunction with a valid TGT.
Debian
CVE-2010-0014: sssd - System Security Services Daemon (SSSD) before 1.0.1, when the krb5 auth_provider...
vendor_debian·2010·CVSS 3.7
CVE-2010-0014 [LOW] CVE-2010-0014: sssd - System Security Services Daemon (SSSD) before 1.0.1, when the krb5 auth_provider...
System Security Services Daemon (SSSD) before 1.0.1, when the krb5 auth_provider is configured but the KDC is unreachable, allows physically proximate attackers to authenticate, via an arbitrary password, to the screen-locking program on a workstation that has any user's Kerberos ticket-granting ticket (TGT); and might allow remote attackers to bypass intended access restrictions via vectors involving an arbitrary password in conjunction with a valid TGT.
Scope: local
bookworm: resolved (fixed in 1.0.5-1)
bullseye: resolved (fixed in 1.0.5-1)
forky: resolved (fixed in 1.0.5-1)
sid: resolved (fixed in 1.0.5-1)
trixie: resolved (fixed in 1.0.5-1)
GHSA
GHSA-fh23-xmjc-5cw7: System Security Services Daemon (SSSD) before 1
ghsa_unreviewed·2022-05-02
CVE-2010-0014 [LOW] CWE-287 GHSA-fh23-xmjc-5cw7: System Security Services Daemon (SSSD) before 1
System Security Services Daemon (SSSD) before 1.0.1, when the krb5 auth_provider is configured but the KDC is unreachable, allows physically proximate attackers to authenticate, via an arbitrary password, to the screen-locking program on a workstation that has any user's Kerberos ticket-granting ticket (TGT); and might allow remote attackers to bypass intended access restrictions via vectors involving an arbitrary password in conjunction with a valid TGT.
OSV
CVE-2010-0014: System Security Services Daemon (SSSD) before 1
osv·2010-01-14·CVSS 3.7
CVE-2010-0014 [LOW] CVE-2010-0014: System Security Services Daemon (SSSD) before 1
System Security Services Daemon (SSSD) before 1.0.1, when the krb5 auth_provider is configured but the KDC is unreachable, allows physically proximate attackers to authenticate, via an arbitrary password, to the screen-locking program on a workstation that has any user's Kerberos ticket-granting ticket (TGT); and might allow remote attackers to bypass intended access restrictions via vectors involving an arbitrary password in conjunction with a valid TGT.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2010-0014 SSSD accepts any password when offline with a valid TGT available
bugzilla·2010-01-08·CVSS 3.7
CVE-2010-0014 [LOW] CVE-2010-0014 SSSD accepts any password when offline with a valid TGT available
CVE-2010-0014 SSSD accepts any password when offline with a valid TGT available
Description of problem:
When sssd is configured to use Kerberos for authentication
(auth_provider = krb5 in a domain section) any password is accepted as
valid under the following conditions:
- the system is offline, i.e. the KDC configured with the option
krb5_kdcip cannot be reached
- the user who tries to authenticate has a valid TGT for the Kerberos
realm configured with to option krb5_realm in his credential cache
file
Short term fix:
- disable Kerberos authentication and use alternatives if possible
Version-Release number of selected component (if applicable):
How reproducible:
Every time
Steps to Reproduce:
1. Configure an SSSD system to authenticate against a Kerberos KDC
2. Log in as a user whi
Bugzilla
CVE-2010-0014 SSSD accepts any password when offline with a valid TGT available
bugzilla·2010-01-07·CVSS 3.7
CVE-2010-0014 [LOW] CVE-2010-0014 SSSD accepts any password when offline with a valid TGT available
CVE-2010-0014 SSSD accepts any password when offline with a valid TGT available
Description of problem:
When sssd is configured to use Kerberos for authentication
(auth_provider = krb5 in a domain section) any password is accepted as
valid under the following conditions:
- the system is offline, i.e. the KDC configured with the option
krb5_kdcip cannot be reached
- the user who tries to authenticate has a valid TGT for the Kerberos
realm configured with to option krb5_realm in his credential cache
file
Short term fix:
- disable Kerberos authentication and use alternatives if possible
Version-Release number of selected component (if applicable):
How reproducible:
Every time
Steps to Reproduce:
1. Configure an SSSD system to authenticate against a Kerberos KDC
2. Log in as a user whi
http://secunia.com/advisories/38160http://www.securityfocus.com/bid/37747https://bugzilla.redhat.com/show_bug.cgi?id=553233https://fedorahosted.org/sssd/wiki/Releases/Notes-1.0.1http://secunia.com/advisories/38160http://www.securityfocus.com/bid/37747https://bugzilla.redhat.com/show_bug.cgi?id=553233https://fedorahosted.org/sssd/wiki/Releases/Notes-1.0.1
2010-01-14
Published