-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sun, 02 Feb 2025 14:30:10 +0100 Source: sssd Architecture: source Version: 2.4.1-2+deb11u1 Distribution: bullseye-security Urgency: high Maintainer: Debian SSSD Team <pkg-sssd-devel@alioth-lists.debian.net> Changed-By: Guilhem Moulin <guilhem@debian.org> Closes: 992710 1070369 Changes: sssd (2.4.1-2+deb11u1) bullseye-security; urgency=high . * Non-maintainer upload by the LTS Team. * Fix CVE-2021-3621: Shell command injection via the logs-fetch and cache-expire subcommands. (Closes: #992710) * Fix CVE-2023-3758: Due to a race condition flaw the GPO policy is not consistently applied for authenticated users. (Closes: #1070369) Checksums-Sha1: 50689990b60a38fbe704c85408ccb9f57b1f550b 5127 sssd_2.4.1-2+deb11u1.dsc b8360f6294f35458dffab446f740767886dad9ff 7374100 sssd_2.4.1.orig.tar.gz ff3a0af1c4f8e750899c7635aeb1046826f3f46d 488 sssd_2.4.1.orig.tar.gz.asc 83c2c74fdf79695a34b93b51cacf892a2ac45311 38532 sssd_2.4.1-2+deb11u1.debian.tar.xz 4b277e93354dfe0201e7bce46c45c91363cf59cf 28685 sssd_2.4.1-2+deb11u1_amd64.buildinfo Checksums-Sha256: 2924a640040df9937cc1706391dcf58d075501c03c3c40c8941cbe831bd38641 5127 sssd_2.4.1-2+deb11u1.dsc 63428d3baf7486f0d076ee106f24372738f6172086abf884e7a7320030c39141 7374100 sssd_2.4.1.orig.tar.gz 7b340dac6cc7939ebadbca856dc2bbd9ff3ea052317688e2e1321354e0d5b403 488 sssd_2.4.1.orig.tar.gz.asc 200f524db63e46e906de0375d7cbde4dfc1d3a5eaf58a95e5f9272f120a92392 38532 sssd_2.4.1-2+deb11u1.debian.tar.xz 718b425171ec30567f2839bb6626dc35b9df1c8f29eb4fbae5d7d46854ac71ed 28685 sssd_2.4.1-2+deb11u1_amd64.buildinfo Files: c096e30b315547b405b33bc6d0188208 5127 utils optional sssd_2.4.1-2+deb11u1.dsc 3b968eff777232b55800473f0f11e397 7374100 utils optional sssd_2.4.1.orig.tar.gz 3543b4722138004a59077507a06cf113 488 utils optional sssd_2.4.1.orig.tar.gz.asc de4a44cb2feab0eba610d9eda5afff07 38532 utils optional sssd_2.4.1-2+deb11u1.debian.tar.xz 05d4e9f87b7766cd05685ac3a047befb 28685 utils optional sssd_2.4.1-2+deb11u1_amd64.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEERpy6p3b9sfzUdbME05pJnDwhpVIFAmefddUACgkQ05pJnDwh pVIz5g//VwDR1wgmWFW6gly/pZlfXd3r3S7JBjWf54i+w/kx0TGex/MdFzLPph/d e2KuyOSvuVOUZqUY9jt7HYU6MGbBQdGIlQSfFHwQqd70Ddb2TXMh0hygo/lYgwo7 Ry1z4QpPzSmrf5MvHBzOMMetJ+/CiVYTgZ94JJukFW7+RMW03lcJP5PfiG3yP0f6 zUmXOiGuftyETzkBDK7BAJJqH1ptV9WBl3C2oCvng1PzK+isC7yrbpol787v7VTY cioZfDvQFCy9RZ9m3OKH7hP4Wcj25NSvqhyyYzJsLlsSyUTybIuZzR/zxBpCXkgb l5y7OKLNmEECRBGjhocGjyA93563WyGyGuq/gEhINA1ioADW8oyDmMRpZF9FWzJQ 5FZqs/XQP7ebH3wSTukbmo2NVWX72yOtyStTLt5ojP4ZhTP56BBAu7FCIwe1kDSN NkI2p/2CbMsJeYapg8DparZv29SqH1SUXDe/MgDa6Zg8NhtkROBj9EHoG3m3GJx0 BD0YXmnq5r4rFmq6sRKfrVrQ3AglHELiRzVl/G/VKLnmY+rUfVoMRcxLr85kdrHq z7MIURTmGVcJbwT7uUBgTdeBboJL0Y5D58vj3Ro8G83u7T5j3A8ivR1WK75FQikF D1GHwWmqsQYeh2ljmWL3n8b4QrMvsBlLeiKyR6EnV9l+rSJ4HuY= =E7pY -----END PGP SIGNATURE-----