REDHAT-BUG-1267580: Low severity FreeIPA sssd_client vulnerability
A memory leak was found in the sssdpacplugin (sssdpacplugin.so library), which is distributed with the sssdclient package.
Original report with additional details:
https://fedorahosted.org/sssd/ticket/2803
Patch:
https://fedorahosted.org/sssd/attachment/ticket/2803/0001-Fix-memory-leak-in-sssdpacverify.patch
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-1267580?
The severity of REDHAT-BUG-1267580 is classified as moderate due to the impact of a memory leak but does not lead to immediate exploitation.
How do I fix REDHAT-BUG-1267580?
To fix REDHAT-BUG-1267580, apply the patch provided in the report to address the memory leak in the sssd_pac_plugin.
What software is affected by REDHAT-BUG-1267580?
The software affected by REDHAT-BUG-1267580 is the sssd_client package from FreeIPA.
What is the impact of REDHAT-BUG-1267580?
The impact of REDHAT-BUG-1267580 is a memory leak in the sssd_pac_plugin that can lead to increased memory usage over time.
Is REDHAT-BUG-1267580 related to any specific version of the software?
REDHAT-BUG-1267580 specifically affects the sssd_client package, but does not specify particular versions as it relates to a library.