SUSE-SU-2023:0200-1

Advisory lineage Upstream: 1 Downstream: 0
Upstream
Published: 27 Jan 2023, 14:23
Last modified:04 Feb 2026, 03:03

Vulnerability Summary

Overall Risk (default)
minimal
0/100
CVSS Score
No data
EPSS Score
No data
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

27 Jan 2023, 14:23
Published
Vulnerability first disclosed
04 Feb 2026, 03:03
Last Modified
Vulnerability information updated

Description

Security update for sssd This update for sssd fixes the following issues: - CVE-2022-4254: Fixed a bug in libsss_certmap which could allow an attacker to gain control of the admin account and perform a full domain takeover. (bsc#1207474)

Affected Systems

  • susesssd&distro=SUSE Linux Enterprise Server 12 SP4-LTSS

    < 1.16.1-4.43.1

  • susesssd&distro=SUSE Linux Enterprise Server for SAP Applications 12 SP4

    < 1.16.1-4.43.1

  • susesssd&distro=SUSE OpenStack Cloud 9

    < 1.16.1-4.43.1

  • susesssd&distro=SUSE OpenStack Cloud Crowbar 9

    < 1.16.1-4.43.1

References (3)