REDHAT-BUG-1656618: Medium severity suse sssd (system security services daemon) with kerberos 5 support vulnerability
An issue was found in SSSD. The default option for fallbackhomedir returns '/' for empty home directories in the passwd file.
References: https://github.com/SSSD/sssd/pull/703
Upstream Patch: https://github.com/SSSD/sssd/pull/703/commits/fa0a6400ebd2f4056a057914355ec2ddefc14fe6 https://github.com/SSSD/sssd/pull/703/commits/fe11bd0d5b7dea9f1723c5a59ba0c47641802797
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-1656618?
The severity of REDHAT-BUG-1656618 is high due to its impact on user home directory configurations.
How do I fix REDHAT-BUG-1656618?
To fix REDHAT-BUG-1656618, update the SSSD to the latest version that contains the patch for this issue.
What does the fallback_homedir option affect in REDHAT-BUG-1656618?
The fallback_homedir option in REDHAT-BUG-1656618 affects the assignment of home directories for users with empty entries in the passwd file.
Which versions of SSSD are affected by REDHAT-BUG-1656618?
REDHAT-BUG-1656618 affects all versions of SSSD prior to the application of the relevant patch.
Is there a workaround for REDHAT-BUG-1656618?
A temporary workaround for REDHAT-BUG-1656618 involves manually specifying valid home directory paths for affected users.