Security Flaw in sssd Group Policy Objects in Red Hat Products
CVE-2018-16838
5.4MEDIUM
What is CVE-2018-16838?
A vulnerability exists in the sssd implementation of Group Policy Objects, which can lead to unauthorized access. If the necessary permissions for GPO are not appropriately set on the server, sssd mistakenly permits all authenticated users to log in, ignoring the defined access restrictions. This could expose sensitive systems to potential unauthorized user access, thereby undermining the integrity and security of the environment.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
sssd
References
CVSS V3.1
Score:
5.4
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved
