Bug 1124194 (CVE-2018-16838) - VUL-0: CVE-2018-16838: sssd: improper implementation of GPOs due to too restrictive permissions
Summary: VUL-0: CVE-2018-16838: sssd: improper implementation of GPOs due to too restr...
Status: RESOLVED FIXED
Alias: CVE-2018-16838
Product: SUSE Security Incidents
Classification: Novell Products
Component: Incidents (show other bugs)
Version: unspecified
Hardware: Other Other
: P3 - Medium : Normal
Target Milestone: ---
Assignee: Security Team bot
QA Contact: Security Team bot
URL: https://smash.suse.de/issue/224142/
Whiteboard: CVSSv3:RedHat:CVE-2018-16838:5.4:(AV:...
Keywords:
Depends on:
Blocks:
 
Reported: 2019-02-04 16:02 UTC by Alexandros Toptsoglou
Modified: 2024-07-16 15:40 UTC (History)
4 users (show)

See Also:
Found By: Security Response Team
Services Priority:
Business Priority:
Blocker: ---
Marketing QA Status: ---
IT Deployment: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Alexandros Toptsoglou 2019-02-04 16:02:24 UTC
rh#1640820

A flaw was found in sssd Group Policy Objects implementation. When the GPO is not readable by SSSD due to a too strict permission settings on the server side, SSSD will allow all authenticated users to login instead of denying access.

References:
https://bugzilla.redhat.com/show_bug.cgi?id=1640820
http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2018-16838
Comment 1 Alexandros Toptsoglou 2019-02-04 16:05:25 UTC
Currently there is no further information regarding this issue.
We will come back when we have more information
Comment 3 Alexandros Toptsoglou 2019-05-22 15:49:50 UTC
The issue in introduced in [1] when GPO-based access control was introduced om sssd. Based on this the first version which had GPO-based access control is 1.11.90.

Tracked as affected SLE12-SP2,SLE12-SP4 and SLE15

[1] https://github.com/SSSD/sssd/commit/60cab26b12df9a2153823972cde0c38ca86e01b9
Comment 6 Samuel Cabrero 2019-06-12 15:41:05 UTC
The patches are in the maintenance queue, assign to security team to close after release.
Comment 7 Swamp Workflow Management 2019-06-12 16:11:19 UTC
SUSE-SU-2019:1477-1: An update that solves one vulnerability and has one errata is now available.

Category: security (moderate)
Bug References: 1124194,1132879
CVE References: CVE-2018-16838
Sources used:
SUSE Linux Enterprise Software Development Kit 12-SP3 (src):    sssd-1.13.4-34.37.1
SUSE Linux Enterprise Server 12-SP3 (src):    sssd-1.13.4-34.37.1
SUSE Linux Enterprise Desktop 12-SP3 (src):    sssd-1.13.4-34.37.1

NOTE: This line indicates an update has been released for the listed product(s). At times this might be only a partial fix. If you have questions please reach out to maintenance coordination.
Comment 8 Swamp Workflow Management 2019-06-12 16:13:34 UTC
SUSE-SU-2019:1476-1: An update that solves one vulnerability and has three fixes is now available.

Category: security (moderate)
Bug References: 1124194,1132657,1132879,1135247
CVE References: CVE-2018-16838
Sources used:
SUSE Linux Enterprise Module for Open Buildservice Development Tools 15-SP1 (src):    sssd-1.16.1-3.24.6
SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 (src):    sssd-1.16.1-3.24.6
SUSE Linux Enterprise Module for Basesystem 15-SP1 (src):    sssd-1.16.1-3.24.6
SUSE Linux Enterprise Module for Basesystem 15 (src):    sssd-1.16.1-3.24.6

NOTE: This line indicates an update has been released for the listed product(s). At times this might be only a partial fix. If you have questions please reach out to maintenance coordination.
Comment 9 Swamp Workflow Management 2019-06-12 19:10:24 UTC
SUSE-SU-2019:1480-1: An update that solves one vulnerability and has three fixes is now available.

Category: security (moderate)
Bug References: 1124194,1132657,1132879,1135247
CVE References: CVE-2018-16838
Sources used:
SUSE Linux Enterprise Software Development Kit 12-SP4 (src):    sssd-1.16.1-4.12.2
SUSE Linux Enterprise Server 12-SP4 (src):    sssd-1.16.1-4.12.2
SUSE Linux Enterprise Desktop 12-SP4 (src):    sssd-1.16.1-4.12.2

NOTE: This line indicates an update has been released for the listed product(s). At times this might be only a partial fix. If you have questions please reach out to maintenance coordination.
Comment 10 Swamp Workflow Management 2019-06-18 16:39:55 UTC
openSUSE-SU-2019:1576-1: An update that solves one vulnerability and has one errata is now available.

Category: security (moderate)
Bug References: 1124194,1132879
CVE References: CVE-2018-16838
Sources used:
openSUSE Leap 42.3 (src):    sssd-1.13.4-21.1
Comment 11 Swamp Workflow Management 2019-06-19 16:13:57 UTC
openSUSE-SU-2019:1589-1: An update that solves one vulnerability and has three fixes is now available.

Category: security (moderate)
Bug References: 1124194,1132657,1132879,1135247
CVE References: CVE-2018-16838
Sources used:
openSUSE Leap 15.1 (src):    sssd-1.16.1-lp151.7.3.1
openSUSE Leap 15.0 (src):    sssd-1.16.1-lp150.2.16.1
Comment 12 Marcus Meissner 2019-10-29 06:27:28 UTC
done