Bugzilla – Bug 880245
VUL-1: CVE-2014-0249: sssd: incorrect expansion of group membership when encountering a non-POSIX group
Last modified: 2019-04-24 15:48:18 UTC
Low severity, so VUL-1. rh#1101751 References: https://bugzilla.redhat.com/show_bug.cgi?id=1101751 http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2014-0249 https://lists.fedorahosted.org/pipermail/sssd-devel/2014-May/019495.html
Affected packages: SLE-11-SP3: sssd
Putting to pending-list. Too minor issue to make SLE updates.
Set to private.
sorry, it was a mistake.
SUSE-SU-2016:2579-1: An update that solves one vulnerability and has three fixes is now available. Category: security (moderate) Bug References: 1002973,1004220,880245,993582 CVE References: CVE-2014-0249 Sources used: SUSE Linux Enterprise Software Development Kit 12-SP1 (src): sssd-1.11.5.1-28.1 SUSE Linux Enterprise Server 12-SP1 (src): sssd-1.11.5.1-28.1 SUSE Linux Enterprise Desktop 12-SP1 (src): sssd-1.11.5.1-28.1
openSUSE-SU-2016:2651-1: An update that solves one vulnerability and has three fixes is now available. Category: security (moderate) Bug References: 1002973,1004220,880245,993582 CVE References: CVE-2014-0249 Sources used: openSUSE Leap 42.1 (src): sssd-1.11.5.1-16.1
Reassigned to the security team to evaluate closing it.