CVE Database
/

CVE-2015-5292

Back to search

CVE-2015-5292

Published: Oct 29, 2015

Modified: Aug 6, 2024

PUBLISHED

Description

Memory leak in the Privilege Attribute Certificate (PAC) responder plugin (sssd_pac_plugin.so) in System Security Services Daemon (SSSD) 1.10 before 1.13.1 allows remote authenticated users to cause a denial of service (memory consumption) via a large number of logins that trigger parsing of PAC blobs during Kerberos authentication.

VendorProductVersions

n/a

n/a

affected
n/a

References

RHSA-2015:2355
vendor-advisory
x_refsource_REDHAT
RHSA-2015:2019
vendor-advisory
x_refsource_REDHAT
1034038
vdb-entry
x_refsource_SECTRACK
77529
vdb-entry
x_refsource_BID
FEDORA-2015-cdea5324a8
vendor-advisory
x_refsource_FEDORA
FEDORA-2015-202c127199
vendor-advisory
x_refsource_FEDORA
FEDORA-2015-7b47df69d3
vendor-advisory
x_refsource_FEDORA

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now