UbuntuUpdates.org

Package "libsss-nss-idmap-dev"

Name: libsss-nss-idmap-dev

Description:

SID based lookups library for SSSD -- development files

Latest version: 2.2.3-3ubuntu0.13
Release: focal (20.04)
Level: security
Repository: main
Head package: sssd
Homepage: https://github.com/SSSD/sssd

Links


Download "libsss-nss-idmap-dev"


Other versions of "libsss-nss-idmap-dev" in Focal

Repository Area Version
base main 2.2.3-3
updates main 2.2.3-3ubuntu0.13

Changelog

Version: 2.2.3-3ubuntu0.13 2024-06-17 20:07:17 UTC

  sssd (2.2.3-3ubuntu0.13) focal-security; urgency=medium

  * SECURITY UPDATE: race when GPO policy is being applied
    - debian/patches/CVE-2023-3758.patch: use hash to store intermediate
      results in src/providers/ad/ad_gpo.c.
    - CVE-2023-3758

 -- Marc Deslauriers <email address hidden> Fri, 07 Jun 2024 10:55:58 -0400

Source diff to previous version
CVE-2023-3758 A race condition flaw was found in sssd where the GPO policy is not consistently applied for authenticated users. This may lead to improper authoriza

Version: 2.2.3-3ubuntu0.12 2023-06-16 13:07:05 UTC

  sssd (2.2.3-3ubuntu0.12) focal-security; urgency=medium

  * Fix crash with mismatched packages (LP: #2023598)
    - debian/control: add a versioned dependency on libsss-certmap0 to the
      sssd-common package.

 -- Marc Deslauriers <email address hidden> Thu, 15 Jun 2023 18:16:57 -0400

Source diff to previous version
2023598 Too loose Depends constraints in sssd-common causes critical crash

Version: 2.2.3-3ubuntu0.11 2023-06-12 13:07:07 UTC

  sssd (2.2.3-3ubuntu0.11) focal-security; urgency=medium

  * SECURITY UPDATE: libsss_certmap fails to sanitise certificate data used
    in LDAP filters
    - debian/patches/CVE-2022-4254.patch: sanitize LDAP search filter in
      Makefile.am, src/lib/certmap/sss_certmap.c,
      src/lib/certmap/sss_certmap.exports, src/lib/certmap/sss_certmap.h,
      src/responder/pam/pamsrv_p11.c, src/tests/cmocka/test_certmap.c,
      src/util/util.c, src/util/util_ext.c.
    - CVE-2022-4254

 -- Marc Deslauriers <email address hidden> Tue, 06 Jun 2023 09:22:35 -0400

Source diff to previous version
CVE-2022-4254 sssd: libsss_certmap fails to sanitise certificate data used in LDAP filters

Version: 2.2.3-3ubuntu0.10 2023-03-08 15:06:50 UTC

  sssd (2.2.3-3ubuntu0.10) focal-security; urgency=medium

  * No-change rebuild against samba security update.

 -- Marc Deslauriers <email address hidden> Fri, 03 Mar 2023 08:21:36 -0500

Source diff to previous version

Version: 2.2.3-3ubuntu0.8 2021-11-11 13:06:45 UTC

  sssd (2.2.3-3ubuntu0.8) focal-security; urgency=medium

  * No-change rebuild against samba security update.

 -- Marc Deslauriers <email address hidden> Wed, 10 Nov 2021 10:20:51 -0500




About   -   Send Feedback to @ubuntu_updates