Ubuntu Security Notice USN-5067-1

Discussion in 'News Aggregator' started by Packet Storm, 9 Sep 2021.

  1. Packet Storm

    Packet Storm Guest

    Ubuntu Security Notice 5067-1 - Jakub Hrozek discovered that SSSD incorrectly handled file permissions. A local attacker could possibly use this issue to read the sudo rules available for any user. This issue only affected Ubuntu 18.04 LTS. It was discovered that SSSD incorrectly handled Group Policy Objects. When SSSD is configured with too strict permissions causing the GPO to not be readable, SSSD will allow all authenticated users to login instead of being denied, contrary to expectations. This issue only affected Ubuntu 18.04 LTS. Various other issues were also addressed.

    Continue reading...
     

Share This Page

Loading...