First published: Wed Dec 05 2018(Updated: )
An issue was found in SSSD. The default option for fallback_homedir returns '/' for empty home directories in the passwd file. References: <a href="https://github.com/SSSD/sssd/pull/703">https://github.com/SSSD/sssd/pull/703</a> Upstream Patch: <a href="https://github.com/SSSD/sssd/pull/703/commits/fa0a6400ebd2f4056a057914355ec2ddefc14fe6">https://github.com/SSSD/sssd/pull/703/commits/fa0a6400ebd2f4056a057914355ec2ddefc14fe6</a> <a href="https://github.com/SSSD/sssd/pull/703/commits/fe11bd0d5b7dea9f1723c5a59ba0c47641802797">https://github.com/SSSD/sssd/pull/703/commits/fe11bd0d5b7dea9f1723c5a59ba0c47641802797</a>
Affected Software | Affected Version | How to fix |
---|---|---|
SUSE SSSD (System Security Services Daemon) with Kerberos 5 support |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of REDHAT-BUG-1656618 is high due to its impact on user home directory configurations.
To fix REDHAT-BUG-1656618, update the SSSD to the latest version that contains the patch for this issue.
The fallback_homedir option in REDHAT-BUG-1656618 affects the assignment of home directories for users with empty entries in the passwd file.
REDHAT-BUG-1656618 affects all versions of SSSD prior to the application of the relevant patch.
A temporary workaround for REDHAT-BUG-1656618 involves manually specifying valid home directory paths for affected users.