Security Flaw in sssd Group Policy Objects in Red Hat Products
CVE-2018-16838

5.4MEDIUM

Key Information:

Vendor

[unknown]

Status
Vendor
CVE Published:
25 March 2019

What is CVE-2018-16838?

A vulnerability exists in the sssd implementation of Group Policy Objects, which can lead to unauthorized access. If the necessary permissions for GPO are not appropriately set on the server, sssd mistakenly permits all authenticated users to log in, ignoring the defined access restrictions. This could expose sensitive systems to potential unauthorized user access, thereby undermining the integrity and security of the environment.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

sssd

References

CVSS V3.1

Score:
5.4
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.