8.8
CVSSv3

CVE-2017-12173

Published: 27/07/2018 Updated: 09/10/2019
CVSS v2 Base Score: 4 | Impact Score: 2.9 | Exploitability Score: 8
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 356
Vector: AV:N/AC:L/Au:S/C:P/I:N/A:N

Vulnerability Summary

It was found that sssd's sysdb_search_user_by_upn_res() function prior to 1.16.0 did not sanitize requests when querying its local cache and was vulnerable to injection. In a centralized login environment, if a password hash was locally cached for a given user, an authenticated attacker could use this flaw to retrieve it.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

redhat enterprise linux server 6.0

redhat enterprise linux workstation 6.0

redhat enterprise linux server eus 7.5

redhat enterprise linux server eus 7.4

redhat enterprise linux server aus 7.4

redhat enterprise linux desktop 7.0

redhat enterprise linux workstation 7.0

redhat enterprise linux server 7.0

redhat enterprise linux desktop 6.0

fedoraproject sssd

Vendor Advisories

Debian Bug report logs - #877885 sssd: CVE-2017-12173: unsanitized input when searching in local cache database Package: src:sssd; Maintainer for src:sssd is Debian SSSD Team <pkg-sssd-devel@alioth-listsdebiannet>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Fri, 6 Oct 2017 16:57:05 UTC Severity: i ...
SSSD could be made to expose sensitive information ...
Synopsis Moderate: sssd security and bug fix update Type/Severity Security Advisory: Moderate Topic An update for sssd is now available for Red Hat Enterprise Linux 7Red Hat Product Security has rated this update as having a security impact of Moderate A Common Vulnerability Scoring System (CVSS) base sco ...
Synopsis Moderate: sssd and ding-libs security and bug fix update Type/Severity Security Advisory: Moderate Topic An update for sssd and ding-libs is now available for Red Hat Enterprise Linux 6Red Hat Product Security has rated this update as having a security impact of Moderate A Common Vulnerability Sc ...
Unsanitized input when searching in local cache databaseIt was found that sssd's sysdb_search_user_by_upn_res() function did not sanitize requests when querying its local cache and was vulnerable to injection In a centralized login environment, if a password hash was locally cached for a given user, an authenticated attacker could use this flaw to ...
It was found that sssd's sysdb_search_user_by_upn_res() function did not sanitize requests when querying its local cache and was vulnerable to injection In a centralized login environment, if a password hash was locally cached for a given user, an authenticated attacker could use this flaw to retrieve it ...