<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T12:21:49.250179+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/alsa-2024:2571</id>
    <title>ALSA-2024:2571 — Moderate: sssd security and bug fix update</title>
    <updated>2026-10-03T12:21:49.286201+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> AlmaLinux:9: libipa_hbac, AlmaLinux:9: libsss_autofs, AlmaLinux:9: libsss_certmap, AlmaLinux:9: libsss_idmap, AlmaLinux:9: libsss_nss_idmap, AlmaLinux:9: libsss_nss_idmap-devel, AlmaLinux:9: libsss_simpleifp, AlmaLinux:9: libsss_sudo, AlmaLinux:9: python3-libipa_hbac, AlmaLinux:9: python3-libsss_nss_idmap and 21 more</p>
<p>The System Security Services Daemon (SSSD) service provides a set of daemons to manage access to remote directories and authentication mechanisms. It also provides the Name Service Switch (NSS) and the Pluggable Authentication Modules (PAM) interfaces toward the system, and a pluggable back-end system to connect to multiple different account sources.</p>
<p>Security Fix(es):</p>
<p>* sssd: Race condition during authorization leads to GPO policies functioning inconsistently (CVE-2023-3758)</p>
<p>Bug Fix(es):</p>
<p>* socket leak (JIRA:AlmaLinux-22340)
* Passkey cannot fall back to password (JIRA:AlmaLinux-28161)
* sssd: Race condition during authorization leads to GPO policies functioning inconsistently (JIRA:AlmaLinux-27209)</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/alsa-2024:2571"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2024-04108</id>
    <title>bdu:2024-04108</title>
    <updated>2026-10-03T12:21:49.286302+00:00</updated>
    <content>bdu:2024-04108</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2024-04108"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2024-avi-0470</id>
    <title>certfr-2024-avi-0470 — De multiples vulnérabilités ont été découvertes dans les produits IBM. Certaines d'entre elles permettent à un attaquan…</title>
    <updated>2026-10-03T12:21:49.286320+00:00</updated>
    <content>certfr-2024-avi-0470</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2024-avi-0470"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2024-20778</id>
    <title>cnvd-2024-20778</title>
    <updated>2026-10-03T12:21:49.286337+00:00</updated>
    <content>cnvd-2024-20778</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2024-20778"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-260289</id>
    <title>EUVD-2026-260289</title>
    <updated>2026-10-03T12:21:49.286348+00:00</updated>
    <content>EUVD-2026-260289</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-260289"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2023-3758</id>
    <title>fkie_cve-2023-3758</title>
    <updated>2026-10-03T12:21:49.286359+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A race condition flaw was found in sssd where the GPO policy is not consistently applied for authenticated users. This may lead to improper authorization issues, granting or denying access to resources inappropriately.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2023-3758"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-7pwr-cfrc-px4f</id>
    <title>GHSA-7pwr-cfrc-px4f</title>
    <updated>2026-10-03T12:21:49.286380+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A race condition flaw was found in sssd where the GPO policy is not consistently applied for authenticated users. This may lead to improper authorization issues, granting or denying access to resources inappropriately.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-7pwr-cfrc-px4f"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2023-3758</id>
    <title>gsd-2023-3758</title>
    <updated>2026-10-03T12:21:49.286394+00:00</updated>
    <content>gsd-2023-3758</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2023-3758"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/oesa-2024-1546</id>
    <title>OESA-2024-1546 — sssd security update</title>
    <updated>2026-10-03T12:21:49.286404+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> openEuler:20.03-LTS-SP1: sssd, openEuler:22.03-LTS: sssd, openEuler:22.03-LTS-SP1: sssd, openEuler:22.03-LTS-SP3: sssd</p>
<p>SSSD provides a set of daemons to manage access to remote directories and authentication mechanisms such as LDAP, Kerberos or FreeIPA. It provides an NSS and PAM interface toward the system and a pluggable backend system to connect to multiple different account sources.

Security Fix(es):

A race condition flaw was found in sssd where the GPO policy is not consistently applied for authenticated users. This may lead to improper authorization issues, granting or denying access to resources inappropriately.(CVE-2023-3758)</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/oesa-2024-1546"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2024:1919</id>
    <title>RHSA-2024:1919 — Red Hat Security Advisory: sssd security update</title>
    <updated>2026-10-03T12:21:49.286431+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>sssd: Race condition during authorization leads to GPO policies functioning inconsistently</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2024:1919"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2024:2571</id>
    <title>RHSA-2024:2571 — Red Hat Security Advisory: sssd security and bug fix update</title>
    <updated>2026-10-03T12:21:49.286449+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>sssd: Race condition during authorization leads to GPO policies functioning inconsistently</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2024:2571"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2024:1549-1</id>
    <title>SUSE-SU-2024:1549-1 — Security update for sssd</title>
    <updated>2026-10-03T12:21:49.286464+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for sssd</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2024:1549-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2023-3758</id>
    <title>UBUNTU-CVE-2023-3758</title>
    <updated>2026-10-03T12:21:49.286479+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:Pro:16.04:LTS: sssd, Ubuntu:Pro:18.04:LTS: sssd, Ubuntu:20.04:LTS: sssd, Ubuntu:22.04:LTS: sssd, Ubuntu:24.04:LTS: sssd</p>
<p>A race condition flaw was found in sssd where the GPO policy is not consistently applied for authenticated users. This may lead to improper authorization issues, granting or denying access to resources inappropriately.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2023-3758"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2024-0930</id>
    <title>WID-SEC-W-2024-0930 — Red Hat Enterprise Linux (sssd): Schwachstelle ermöglicht Umgehen von Sicherheitsvorkehrungen</title>
    <updated>2026-10-03T12:21:49.286502+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, authentisierter Angreifer kann eine Schwachstelle in Red Hat Enterprise Linux ausnutzen, um Sicherheitsvorkehrungen zu umgehen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2024-0930"/>
  </entry>
</feed>
