USN-3526-1

Source
https://ubuntu.com/security/notices/USN-3526-1
Import Source
https://github.com/canonical/ubuntu-security-notices/blob/main/osv/usn/USN-3526-1.json
JSON Data
https://api.test.osv.dev/v1/vulns/USN-3526-1
Upstream
Related
Published
2018-01-10T12:57:14.506582Z
Modified
2025-09-08T16:36:18Z
Summary
sssd vulnerability
Details

It was discovered that SSSD incorrectly handled certain inputs when querying its local cache. An attacker could use this to inject arbitrary code and expose sensitive information.

References

Affected packages

Ubuntu:16.04:LTS / sssd

Package

Name
sssd
Purl
pkg:deb/ubuntu/sssd@1.13.4-1ubuntu1.10?arch=source&distro=xenial

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.13.4-1ubuntu1.10

Affected versions

1.*

1.12.5-2
1.13.1-2
1.13.2-1
1.13.3-1
1.13.4-1
1.13.4-1ubuntu1
1.13.4-1ubuntu1.1
1.13.4-1ubuntu1.2
1.13.4-1ubuntu1.5
1.13.4-1ubuntu1.6
1.13.4-1ubuntu1.7
1.13.4-1ubuntu1.8
1.13.4-1ubuntu1.9

Ecosystem specific

{
    "availability": "No subscription required",
    "binaries": [
        {
            "binary_version": "1.13.4-1ubuntu1.10",
            "binary_name": "libipa-hbac-dev"
        },
        {
            "binary_version": "1.13.4-1ubuntu1.10",
            "binary_name": "libipa-hbac0"
        },
        {
            "binary_version": "1.13.4-1ubuntu1.10",
            "binary_name": "libnss-sss"
        },
        {
            "binary_version": "1.13.4-1ubuntu1.10",
            "binary_name": "libpam-sss"
        },
        {
            "binary_version": "1.13.4-1ubuntu1.10",
            "binary_name": "libsss-idmap-dev"
        },
        {
            "binary_version": "1.13.4-1ubuntu1.10",
            "binary_name": "libsss-idmap0"
        },
        {
            "binary_version": "1.13.4-1ubuntu1.10",
            "binary_name": "libsss-nss-idmap-dev"
        },
        {
            "binary_version": "1.13.4-1ubuntu1.10",
            "binary_name": "libsss-nss-idmap0"
        },
        {
            "binary_version": "1.13.4-1ubuntu1.10",
            "binary_name": "libsss-simpleifp-dev"
        },
        {
            "binary_version": "1.13.4-1ubuntu1.10",
            "binary_name": "libsss-simpleifp0"
        },
        {
            "binary_version": "1.13.4-1ubuntu1.10",
            "binary_name": "libsss-sudo"
        },
        {
            "binary_version": "1.13.4-1ubuntu1.10",
            "binary_name": "libwbclient-sssd"
        },
        {
            "binary_version": "1.13.4-1ubuntu1.10",
            "binary_name": "libwbclient-sssd-dev"
        },
        {
            "binary_version": "1.13.4-1ubuntu1.10",
            "binary_name": "python-libipa-hbac"
        },
        {
            "binary_version": "1.13.4-1ubuntu1.10",
            "binary_name": "python-libsss-nss-idmap"
        },
        {
            "binary_version": "1.13.4-1ubuntu1.10",
            "binary_name": "python-sss"
        },
        {
            "binary_version": "1.13.4-1ubuntu1.10",
            "binary_name": "python3-libipa-hbac"
        },
        {
            "binary_version": "1.13.4-1ubuntu1.10",
            "binary_name": "python3-libsss-nss-idmap"
        },
        {
            "binary_version": "1.13.4-1ubuntu1.10",
            "binary_name": "python3-sss"
        },
        {
            "binary_version": "1.13.4-1ubuntu1.10",
            "binary_name": "sssd"
        },
        {
            "binary_version": "1.13.4-1ubuntu1.10",
            "binary_name": "sssd-ad"
        },
        {
            "binary_version": "1.13.4-1ubuntu1.10",
            "binary_name": "sssd-ad-common"
        },
        {
            "binary_version": "1.13.4-1ubuntu1.10",
            "binary_name": "sssd-common"
        },
        {
            "binary_version": "1.13.4-1ubuntu1.10",
            "binary_name": "sssd-dbus"
        },
        {
            "binary_version": "1.13.4-1ubuntu1.10",
            "binary_name": "sssd-ipa"
        },
        {
            "binary_version": "1.13.4-1ubuntu1.10",
            "binary_name": "sssd-krb5"
        },
        {
            "binary_version": "1.13.4-1ubuntu1.10",
            "binary_name": "sssd-krb5-common"
        },
        {
            "binary_version": "1.13.4-1ubuntu1.10",
            "binary_name": "sssd-ldap"
        },
        {
            "binary_version": "1.13.4-1ubuntu1.10",
            "binary_name": "sssd-proxy"
        },
        {
            "binary_version": "1.13.4-1ubuntu1.10",
            "binary_name": "sssd-tools"
        }
    ]
}