First published: Tue Nov 12 2024(Updated: )
A flaw was found in the FreeIPA API audit, where it sends the whole FreeIPA command line to journalctl. As a consequence, during the FreeIPA installation process, it inadvertently leaks the administrative user credentials, including the administrator password, to the journal database. In the worst-case scenario, where the journal log is centralized, users with access to it can have improper access to the FreeIPA administrator credentials.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
FreeIPA |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-11029 is considered a critical severity vulnerability due to the potential exposure of administrative credentials.
To fix CVE-2024-11029, upgrade to the latest version of FreeIPA that addresses this vulnerability.
CVE-2024-11029 is an information disclosure vulnerability that leaks sensitive administrative user credentials.
CVE-2024-11029 affects multiple versions of FreeIPA, particularly those that include the flawed API audit feature.
CVE-2024-11029 was disclosed in 2024 and is currently being addressed by the FreeIPA development team.