CVE-2011-1758
Published May 26, 2011
Last updated 2 years ago
Overview
- Description
- The krb5_save_ccname_done function in providers/krb5/krb5_auth.c in System Security Services Daemon (SSSD) 1.5.x before 1.5.7, when automatic ticket renewal and offline authentication are configured, uses a pathname string as a password, which allows local users to bypass Kerberos authentication by listing the /tmp directory to obtain the pathname.
- Source
- secalert@redhat.com
- NVD status
- Modified
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 3.7
- Impact score
- 6.4
- Exploitability score
- 1.9
- Vector string
- AV:L/AC:H/Au:N/C:P/I:P/A:P
Weaknesses
- nvd@nist.gov
- CWE-287
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:fedoraproject:sssd:1.5.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C38007C8-061C-4D6D-BC6B-83475E165A3C" }, { "criteria": "cpe:2.3:a:fedoraproject:sssd:1.5.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D8F39928-292C-4B1E-849F-4CB7534558B7" }, { "criteria": "cpe:2.3:a:fedoraproject:sssd:1.5.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "19ACB702-62F5-4614-9CB9-AC07CCEBB399" }, { "criteria": "cpe:2.3:a:fedoraproject:sssd:1.5.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0524C067-9992-40F1-BC7A-EE382251151B" }, { "criteria": "cpe:2.3:a:fedoraproject:sssd:1.5.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "74298682-9BFF-4F81-B387-BA0B036619E5" }, { "criteria": "cpe:2.3:a:fedoraproject:sssd:1.5.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BC55E83E-AAA5-4228-8283-57EBFCE1EEE8" }, { "criteria": "cpe:2.3:a:fedoraproject:sssd:1.5.6:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "AFB0D128-F08B-41C1-B8A1-3FD7845B3F37" }, { "criteria": "cpe:2.3:a:fedoraproject:sssd:1.5.6.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "30FC0A62-9332-46F8-8415-50742BBDFC88" } ], "operator": "OR" } ] } ]