ZeroHour

CVE-2022-4254

PoC ×2
CVSS 3.1
8.8 high
EPSS
<1%p59
Published
()
Modified
Description

sssd: libsss_certmap fails to sanitise certificate data used in LDAP filters

Vendors
fedoraprojectredhat
Products
sssd, enterprise linux, enterprise linux desktop, enterprise linux for ibm z systems, enterprise linux for power big endian, enterprise linux for power little endian, enterprise linux for scientific computing, enterprise linux server, enterprise linux server aus, enterprise linux server for power little endian update services for sap solutions, enterprise linux server tus, enterprise linux server update services for sap solutions
Weakness
CWE-90
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.