Race Condition Flaw in SSSD May Lead to Inconsistent Authorization
CVE-2023-3758
7.1HIGH
Key Information:
- Vendor
Fedoraproject
- Status
- Vendor
- CVE Published:
- 18 April 2024
What is CVE-2023-3758?
A race condition flaw exists within the System Security Services Daemon (SSSD) that affects the consistent application of Group Policy Object (GPO) policies for authenticated users. This vulnerability may result in improper authorization, which can lead to unintended access to sensitive resources or restrictions where access should be granted, compromising the integrity of access control mechanisms within the affected systems.