5
CVSSv2

CVE-2013-0220

Published: 24/02/2013 Updated: 13/02/2023
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

The (1) sss_autofs_cmd_getautomntent and (2) sss_autofs_cmd_getautomntbyname function in responder/autofs/autofssrv_cmd.c and the (3) ssh_cmd_parse_request function in responder/ssh/sshsrv_cmd.c in System Security Services Daemon (SSSD) prior to 1.9.4 allow remote malicious users to cause a denial of service (out-of-bounds read, crash, and restart) via a crafted SSSD packet.

Vulnerable Product Search on Vulmon Subscribe to Product

fedoraproject sssd 0.5.0

fedoraproject sssd 1.8.0

fedoraproject sssd 1.5.8

fedoraproject sssd 1.7.0

fedoraproject sssd 0.3.1

fedoraproject sssd 1.2.3

fedoraproject sssd 1.9.1

fedoraproject sssd 1.5.2

fedoraproject sssd 1.0.4

fedoraproject sssd 1.6.4

fedoraproject sssd 1.8.2

fedoraproject sssd 1.5.13

fedoraproject sssd 0.7.1

fedoraproject sssd 1.4.0

fedoraproject sssd 1.2.2

fedoraproject sssd 1.1.92

fedoraproject sssd 1.2.4

fedoraproject sssd 1.9.2

fedoraproject sssd 1.8.5

fedoraproject sssd 1.5.0

fedoraproject sssd 1.5.5

fedoraproject sssd 1.8.6

fedoraproject sssd 1.5.10

fedoraproject sssd 1.0.2

fedoraproject sssd 1.5.12

fedoraproject sssd 1.0.99

fedoraproject sssd 1.0.5

fedoraproject sssd 1.5.6.1

fedoraproject sssd 0.2.1

fedoraproject sssd 1.5.14

fedoraproject sssd 1.0.0

fedoraproject sssd 0.3.0

fedoraproject sssd 1.2.91

fedoraproject sssd 1.1.2

fedoraproject sssd 1.5.16

fedoraproject sssd 1.5.7

fedoraproject sssd 1.3.1

fedoraproject sssd 1.5.3

fedoraproject sssd 1.0.1

fedoraproject sssd 1.6.1

fedoraproject sssd 1.1.0

fedoraproject sssd 1.2.0

fedoraproject sssd 1.2.1

fedoraproject sssd 1.5.11

fedoraproject sssd 1.6.2

fedoraproject sssd 1.0.6

fedoraproject sssd 0.99.0

fedoraproject sssd 1.8.3

fedoraproject sssd 1.5.9

fedoraproject sssd 1.1.1

fedoraproject sssd 0.4.0

fedoraproject sssd

fedoraproject sssd 1.9.0

fedoraproject sssd 1.4.1

fedoraproject sssd 0.3.2

fedoraproject sssd 1.5.15

fedoraproject sssd 1.0.3

fedoraproject sssd 1.6.3

fedoraproject sssd 0.99.1

fedoraproject sssd 1.5.1

fedoraproject sssd 1.1.91

fedoraproject sssd 1.8.4

fedoraproject sssd 0.3.3

fedoraproject sssd 1.6.0

fedoraproject sssd 1.3.0

fedoraproject sssd 1.5.6

fedoraproject sssd 0.6.0

fedoraproject sssd 0.4.1

fedoraproject sssd 0.7.0

fedoraproject sssd 0.6.1

fedoraproject sssd 1.5.4

fedoraproject sssd 1.5.17

fedoraproject sssd 1.8.1

Vendor Advisories

Synopsis Low: sssd security, bug fix and enhancement update Type/Severity Security Advisory: Low Topic Updated sssd packages that fix two security issues, multiple bugs, and addvarious enhancements are now available for Red Hat Enterprise Linux 6The Red Hat Security Response Team has rated this update as h ...
Debian Bug report logs - #698871 CVE-2013-0219 CVE-2013-0220 Package: sssd; Maintainer for sssd is Debian SSSD Team <pkg-sssd-devel@alioth-listsdebiannet>; Source for sssd is src:sssd (PTS, buildd, popcon) Reported by: Moritz Muehlenhoff <jmm@debianorg> Date: Thu, 24 Jan 2013 18:45:02 UTC Severity: grave Tags: pa ...