Bugzilla – Bug 948819
VUL-1: CVE-2015-5292: sssd: memory leak in the sssd_pac_plugin
Last modified: 2015-10-05 12:30:41 UTC
A memory leak was found in the sssd_pac_plugin (sssd_pac_plugin.so library), which is distributed with the sssd_client package. Original report with additional details: https://fedorahosted.org/sssd/ticket/2803 Patch: https://fedorahosted.org/sssd/attachment/ticket/2803/0001-Fix-memory-leak-in-sssdpac_verify.patch References: https://bugzilla.redhat.com/show_bug.cgi?id=1267580 http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2015-5292 http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-5292
The relevant build-time option is: --enable-pac-responder openSUSE 13.2: disabled openSUSE 13.1: not built SLE 12: disabled SLE 11: not built