UbuntuUpdates.org

Package "sssd-idp"

Name: sssd-idp

Description:

System Security Services Daemon -- Kerberos plugins for external id providers

Latest version: 2.12.0-1ubuntu5.4
Release: resolute (26.04)
Level: updates
Repository: universe
Head package: sssd
Homepage: https://github.com/SSSD/sssd

Links


Download "sssd-idp"


Other versions of "sssd-idp" in Resolute

Repository Area Version
base universe 2.12.0-1ubuntu5
security universe 2.12.0-1ubuntu5.4

Changelog

Version: 2.12.0-1ubuntu5.4 2026-09-03 15:07:46 UTC

sssd (2.12.0-1ubuntu5.4) resolute-security; urgency=medium

  * SECURITY UPDATE: Denial of Service
    - debian/patches/CVE-2026-68743.patch: pam: validate auth_token_length in
      extract_authtok_v1() in src/responder/pam/pamsrv_cmd.c.
    - CVE-2026-68743

 -- John Breton Wed, 02 Sep 2026 11:04:24 -0400

Source diff to previous version
CVE-2026-68743 A flaw was found in SSSD. The extract_authtok_v1() function in the PAM responder does not validate the auth_token_length field against the remaining

Version: 2.12.0-1ubuntu5.3 2026-09-01 05:07:37 UTC

sssd (2.12.0-1ubuntu5.3) resolute-security; urgency=medium

  * SECURITY UPDATE: Fix sssd_pam crash when authenticating with slow
    smartcards (LP: #2162577)
    - d/p/lp2162577-fix-use-after-free-during-p11-child-processing.patch
    - CVE-2026-12610

 -- Wesley Hershberger Fri, 31 Jul 2026 10:29:03 -0500

Source diff to previous version
2162577 sssd_pam sometimes crashes authenticating through remote desktop
CVE-2026-12610 A flaw was found in sssd. When authenticating with a YubiKey, the SSSD PAM responder can crash due to a use-after-free vulnerability, where a memory

Version: 2.12.0-1ubuntu5.2 2026-08-05 17:08:12 UTC
No changelog available yet.
Source diff to previous version

Version: 2.12.0-1ubuntu5.1 2026-06-01 20:07:37 UTC

  sssd (2.12.0-1ubuntu5.1) resolute-security; urgency=medium

  * SECURITY UPDATE: PAM passkey responder denial of service
    - debian/patches/CVE-2026-6245.patch: pam: fix out-of-bounds read in
      pam_passkey_child_read_data in src/responder/pam/pamsrv_passkey.c.
    - CVE-2026-6245

 -- Marc Deslauriers <email address hidden> Sat, 23 May 2026 14:23:52 -0400

CVE-2026-6245 A flaw was found in the System Security Services Daemon (SSSD). The pam_passkey_child_read_data() function within the PAM passkey responder fails to



About   -   Send Feedback to @ubuntu_updates