CVE-2018-16838
published 2019-03-25CVE-2018-16838: A flaw was found in sssd Group Policy Objects implementation. When the GPO is not readable by SSSD due to a too strict permission settings on the server side…
PriorityP426medium5.4CVSS 3.0
AVNACLPRLUINSUCLILAN
EPSS
1.10%
62.2th percentile
A flaw was found in sssd Group Policy Objects implementation. When the GPO is not readable by SSSD due to a too strict permission settings on the server side, SSSD will allow all authenticated users to login instead of denying access.
Affected
8 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | sssd | < sssd 2.2.0-1 (bookworm) | sssd 2.2.0-1 (bookworm) |
| fedoraproject | sssd | >= 0 < 2.2.0-1 | 2.2.0-1 |
| fedoraproject | sssd | >= 0 < 2.2.0-1 | 2.2.0-1 |
| fedoraproject | sssd | >= 0 < 2.2.0-1 | 2.2.0-1 |
| fedoraproject | sssd | >= 0 < 2.2.0-1 | 2.2.0-1 |
| fedoraproject | sssd | >= 0 < 1.16.1-1ubuntu1.8 | 1.16.1-1ubuntu1.8 |
| fedoraproject | sssd | >= 0 < 2.2.3-3ubuntu0.7 | 2.2.3-3ubuntu0.7 |
| redhat | enterprise_linux | — | — |
CVSS provenance
nvdv3.05.4MEDIUMCVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N
nvdv2.05.5MEDIUMAV:N/AC:L/Au:S/C:P/I:P/A:N
osv7.5HIGH
vendor_debian5.4MEDIUM
vendor_redhat5.4MEDIUM
vendor_ubuntu3.8LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-h2vj-4wwx-54q4: A flaw was found in sssd Group Policy Objects implementation
ghsa_unreviewed·2022-05-13
CVE-2018-16838 [MEDIUM] CWE-269 GHSA-h2vj-4wwx-54q4: A flaw was found in sssd Group Policy Objects implementation
A flaw was found in sssd Group Policy Objects implementation. When the GPO is not readable by SSSD due to a too strict permission settings on the server side, SSSD will allow all authenticated users to login instead of denying access.
OSV
sssd vulnerabilities
osv·2021-09-08·CVSS 7.5
CVE-2018-10852 [HIGH] sssd vulnerabilities
sssd vulnerabilities
Jakub Hrozek discovered that SSSD incorrectly handled file permissions. A
local attacker could possibly use this issue to read the sudo rules
available for any user. This issue only affected Ubuntu 18.04 LTS.
(CVE-2018-10852)
It was discovered that SSSD incorrectly handled Group Policy Objects. When
SSSD is configured with too strict permissions causing the GPO to not be
readable, SSSD will allow all authenticated users to login instead of being
denied, contrary to expectations. This issue only affected Ubuntu 18.04
LTS. (CVE-2018-16838)
It was discovered that SSSD incorrectly handled users with no home
directory set. When no home directory was set, SSSD would return the root
directory instead of an empty string, possibly bypassing security measures.
This issue only
OSV
CVE-2018-16838: A flaw was found in sssd Group Policy Objects implementation
osv·2019-03-25·CVSS 5.4
CVE-2018-16838 [MEDIUM] CVE-2018-16838: A flaw was found in sssd Group Policy Objects implementation
A flaw was found in sssd Group Policy Objects implementation. When the GPO is not readable by SSSD due to a too strict permission settings on the server side, SSSD will allow all authenticated users to login instead of denying access.
Ubuntu
SSSD vulnerabilities
vendor_ubuntu·2021-09-08·CVSS 3.8
CVE-2021-3621 [LOW] SSSD vulnerabilities
Title: SSSD vulnerabilities
Summary: Several security issues were fixed in sssd.
Jakub Hrozek discovered that SSSD incorrectly handled file permissions. A
local attacker could possibly use this issue to read the sudo rules
available for any user. This issue only affected Ubuntu 18.04 LTS.
(CVE-2018-10852)
It was discovered that SSSD incorrectly handled Group Policy Objects. When
SSSD is configured with too strict permissions causing the GPO to not be
readable, SSSD will allow all authenticated users to login instead of being
denied, contrary to expectations. This issue only affected Ubuntu 18.04
LTS. (CVE-2018-16838)
It was discovered that SSSD incorrectly handled users with no home
directory set. When no home directory was set, SSSD would return the root
directory instead of an empty
Red Hat
sssd: improper implementation of GPOs due to too restrictive permissions
vendor_redhat·2019-02-04·CVSS 5.4
CVE-2018-16838 [MEDIUM] CWE-269 sssd: improper implementation of GPOs due to too restrictive permissions
sssd: improper implementation of GPOs due to too restrictive permissions
A flaw was found in sssd Group Policy Objects implementation. When the GPO is not readable by SSSD due to a too strict permission settings on the server side, SSSD will allow all authenticated users to login instead of denying access.
Package: sssd (Red Hat Enterprise Linux 5) - Not affected
Package: sssd (Red Hat Enterprise Linux 6) - Not affected
Debian
CVE-2018-16838: sssd - A flaw was found in sssd Group Policy Objects implementation. When the GPO is no...
vendor_debian·2018·CVSS 5.4
CVE-2018-16838 [MEDIUM] CVE-2018-16838: sssd - A flaw was found in sssd Group Policy Objects implementation. When the GPO is no...
A flaw was found in sssd Group Policy Objects implementation. When the GPO is not readable by SSSD due to a too strict permission settings on the server side, SSSD will allow all authenticated users to login instead of denying access.
Scope: local
bookworm: resolved (fixed in 2.2.0-1)
bullseye: resolved (fixed in 2.2.0-1)
forky: resolved (fixed in 2.2.0-1)
sid: resolved (fixed in 2.2.0-1)
trixie: resolved (fixed in 2.2.0-1)
No detection rules found.
No public exploits indexed.
http://lists.opensuse.org/opensuse-security-announce/2019-06/msg00042.htmlhttp://lists.opensuse.org/opensuse-security-announce/2019-06/msg00051.htmlhttps://access.redhat.com/errata/RHSA-2019:2177https://access.redhat.com/errata/RHSA-2019:2437https://access.redhat.com/errata/RHSA-2019:3651https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2018-16838https://lists.debian.org/debian-lts-announce/2023/05/msg00028.htmlhttp://lists.opensuse.org/opensuse-security-announce/2019-06/msg00042.htmlhttp://lists.opensuse.org/opensuse-security-announce/2019-06/msg00051.htmlhttps://access.redhat.com/errata/RHSA-2019:2177https://access.redhat.com/errata/RHSA-2019:2437https://access.redhat.com/errata/RHSA-2019:3651https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2018-16838https://lists.debian.org/debian-lts-announce/2023/05/msg00028.html
2019-03-25
Published