[El-errata] ELSA-2017-3379 Moderate: Oracle Linux 7 sssd security and bug fix update

Errata Announcements for Oracle Linux el-errata at oss.oracle.com
Mon Dec 4 19:06:57 PST 2017


Oracle Linux Security Advisory ELSA-2017-3379

http://linux.oracle.com/errata/ELSA-2017-3379.html

The following updated rpms for Oracle Linux 7 have been uploaded to the 
Unbreakable Linux Network:

x86_64:
libipa_hbac-1.15.2-50.el7_4.8.i686.rpm
libipa_hbac-1.15.2-50.el7_4.8.x86_64.rpm
libipa_hbac-devel-1.15.2-50.el7_4.8.i686.rpm
libipa_hbac-devel-1.15.2-50.el7_4.8.x86_64.rpm
libsss_autofs-1.15.2-50.el7_4.8.x86_64.rpm
libsss_certmap-1.15.2-50.el7_4.8.i686.rpm
libsss_certmap-1.15.2-50.el7_4.8.x86_64.rpm
libsss_certmap-devel-1.15.2-50.el7_4.8.i686.rpm
libsss_certmap-devel-1.15.2-50.el7_4.8.x86_64.rpm
libsss_idmap-1.15.2-50.el7_4.8.i686.rpm
libsss_idmap-1.15.2-50.el7_4.8.x86_64.rpm
libsss_idmap-devel-1.15.2-50.el7_4.8.i686.rpm
libsss_idmap-devel-1.15.2-50.el7_4.8.x86_64.rpm
libsss_nss_idmap-1.15.2-50.el7_4.8.i686.rpm
libsss_nss_idmap-1.15.2-50.el7_4.8.x86_64.rpm
libsss_nss_idmap-devel-1.15.2-50.el7_4.8.i686.rpm
libsss_nss_idmap-devel-1.15.2-50.el7_4.8.x86_64.rpm
libsss_simpleifp-1.15.2-50.el7_4.8.i686.rpm
libsss_simpleifp-1.15.2-50.el7_4.8.x86_64.rpm
libsss_simpleifp-devel-1.15.2-50.el7_4.8.i686.rpm
libsss_simpleifp-devel-1.15.2-50.el7_4.8.x86_64.rpm
libsss_sudo-1.15.2-50.el7_4.8.x86_64.rpm
python-libipa_hbac-1.15.2-50.el7_4.8.x86_64.rpm
python-libsss_nss_idmap-1.15.2-50.el7_4.8.x86_64.rpm
python-sss-1.15.2-50.el7_4.8.x86_64.rpm
python-sss-murmur-1.15.2-50.el7_4.8.x86_64.rpm
python-sssdconfig-1.15.2-50.el7_4.8.noarch.rpm
sssd-1.15.2-50.el7_4.8.x86_64.rpm
sssd-ad-1.15.2-50.el7_4.8.x86_64.rpm
sssd-client-1.15.2-50.el7_4.8.i686.rpm
sssd-client-1.15.2-50.el7_4.8.x86_64.rpm
sssd-common-1.15.2-50.el7_4.8.x86_64.rpm
sssd-common-pac-1.15.2-50.el7_4.8.x86_64.rpm
sssd-dbus-1.15.2-50.el7_4.8.x86_64.rpm
sssd-ipa-1.15.2-50.el7_4.8.x86_64.rpm
sssd-kcm-1.15.2-50.el7_4.8.x86_64.rpm
sssd-krb5-1.15.2-50.el7_4.8.x86_64.rpm
sssd-krb5-common-1.15.2-50.el7_4.8.x86_64.rpm
sssd-ldap-1.15.2-50.el7_4.8.x86_64.rpm
sssd-libwbclient-1.15.2-50.el7_4.8.x86_64.rpm
sssd-libwbclient-devel-1.15.2-50.el7_4.8.i686.rpm
sssd-libwbclient-devel-1.15.2-50.el7_4.8.x86_64.rpm
sssd-polkit-rules-1.15.2-50.el7_4.8.x86_64.rpm
sssd-proxy-1.15.2-50.el7_4.8.x86_64.rpm
sssd-tools-1.15.2-50.el7_4.8.x86_64.rpm
sssd-winbind-idmap-1.15.2-50.el7_4.8.x86_64.rpm


SRPMS:
http://oss.oracle.com/ol7/SRPMS-updates/sssd-1.15.2-50.el7_4.8.src.rpm



Description of changes:

[1.15.2-50.8]
- Resolves: rhbz#1508972 - Accessing IdM kerberos ticket fails while id
                            mapping is applied [rhel-7.4.z]
- Resolves: rhbz#1509177 - Race condition between refreshing the cr_domain
                            list and a request that is using the list can
                            cause a segfault is sssd_nss [rhel-7.4.z]

[1.15.2-50.7]
- Resolves: rhbz#1506142 - SSSD can crash due to ABI changes in
                            libldb >= 1.2.0 (1.1.30) [rhel-7.4.z]
- Resolves: rhbz#1506682 - sssd_client: add mutex protected call to the
                            PAC responder [rhel-7.4.z]
- Resolves: rhbz#1499658 - CVE-2017-12173 sssd: unsanitized input when
                            searching in local cache database [rhel-7.4.z]




More information about the El-errata mailing list