sssd: libsss_certmap fails to sanitise certificate data used in LDAP filters
Published Feb 1, 2023
8.8
HIGHCVSS 3.1
EPSS 0.95%
Description
sssd: libsss_certmap fails to sanitise certificate data used in LDAP filters
Affected products
- Vendor n/a Product SSSD Defaultn/a
- Version Affects SSSD 1.15.3, Fixed in SSSD 2.3.1StatusaffectedConstraints-
- Version
Default status is the baseline for the product, each version can override it (e.g. patched versions marked unaffected).
| Vendor | Product | Default status | Versions | ||||||
|---|---|---|---|---|---|---|---|---|---|
| n/a | SSSD | n/a |
|
Configuration 1
- ≥ 1.15.3 · < 2.3.1
Configuration 2
- 8.0
- 7.0
- 7.0
- 7.0
- 7.0
- 7.0
- 7.0
- 8.2
- 8.1
- 8.2
- 8.2
- 8.1
- 7.0
No data.
Red Hat Enterprise Linux 7
sssd-0:1.16.5-10.el7_9.15
Fixed · RHSA-2023:0403
Red Hat Enterprise Linux 8.1 Update Services for SAP Solutions
sssd-0:2.2.0-19.el8_1.3
Fixed · RHSA-2023:0442
Red Hat Enterprise Linux 8.2 Advanced Update Support
sssd-0:2.2.3-20.el8_2.2
Fixed · RHSA-2023:0397
Red Hat Enterprise Linux 8.2 Telecommunications Update Service
sssd-0:2.2.3-20.el8_2.2
Fixed · RHSA-2023:0397
Red Hat Enterprise Linux 8.2 Update Services for SAP Solutions
sssd-0:2.2.3-20.el8_2.2
Fixed · RHSA-2023:0397
Red Hat Enterprise Linux 6
sssd
Not affected
Red Hat Enterprise Linux 8
sssd
Not affected
Red Hat Enterprise Linux 9
sssd
Not affected
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 7 | sssd-0:1.16.5-10.el7_9.15 | Fixed | RHSA-2023:0403 |
| Red Hat Enterprise Linux 8.1 Update Services for SAP Solutions | sssd-0:2.2.0-19.el8_1.3 | Fixed | RHSA-2023:0442 |
| Red Hat Enterprise Linux 8.2 Advanced Update Support | sssd-0:2.2.3-20.el8_2.2 | Fixed | RHSA-2023:0397 |
| Red Hat Enterprise Linux 8.2 Telecommunications Update Service | sssd-0:2.2.3-20.el8_2.2 | Fixed | RHSA-2023:0397 |
| Red Hat Enterprise Linux 8.2 Update Services for SAP Solutions | sssd-0:2.2.3-20.el8_2.2 | Fixed | RHSA-2023:0397 |
| Red Hat Enterprise Linux 6 | sssd | Not affected | n/a |
| Red Hat Enterprise Linux 8 | sssd | Not affected | n/a |
| Red Hat Enterprise Linux 9 | sssd | Not affected | n/a |
No package ranges for this CVE.
Remediation
Red Hat statement
The issue was introduced in SSSD 1.15.3 (when libsss_certmap was introduced) and resolved in SSSD 2.3.1. It only affects versions of SSSD shipped with RHEL-8.2.0.z and lower streams. Later versions are not affected. FreeIPA is not vulnerable in its default configuration.
References (8)
- https://access.redhat.com/security/cve/CVE-2022-4254 Third Party AdvisoryVendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2149894 ExploitIssue TrackingPatchThird Party Advisory
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2022-51610 Advisory
- https://github.com/SSSD/sssd/commit/a2b9a84460429181f2a4fa7e2bb5ab49fd561274 PatchThird Party Advisory
- https://github.com/SSSD/sssd/issues/5135 ExploitIssue TrackingPatchThird Party Advisory
- https://lists.debian.org/debian-lts-announce/2023/05/msg00028.html mailing-list
- https://nvd.nist.gov/vuln/detail/CVE-2022-4254
- https://www.cve.org/CVERecord?id=CVE-2022-4254
| Link | Providers | Tags |
|---|---|---|
| https://access.redhat.com/security/cve/CVE-2022-4254 | Third Party AdvisoryVendor Advisory | |
| https://bugzilla.redhat.com/show_bug.cgi?id=2149894 | ExploitIssue TrackingPatchThird Party Advisory | |
| https://euvd.enisa.europa.eu/vulnerability/EUVD-2022-51610 | Advisory | |
| https://github.com/SSSD/sssd/commit/a2b9a84460429181f2a4fa7e2bb5ab49fd561274 | PatchThird Party Advisory | |
| https://github.com/SSSD/sssd/issues/5135 | ExploitIssue TrackingPatchThird Party Advisory | |
| https://lists.debian.org/debian-lts-announce/2023/05/msg00028.html | mailing-list | |
| https://nvd.nist.gov/vuln/detail/CVE-2022-4254 | ||
| https://www.cve.org/CVERecord?id=CVE-2022-4254 |
Change history (0)
No recorded changes yet.