stable

CVE-2026-12610 CVE-2026-14474 CVE-2026-14476

FEDORA-2026-9ab663dcd4 created by sbose a month ago for Fedora 43

CVE fixes: CVE-2026-12610 CVE-2026-14474 CVE-2026-14476 - #2494777: CVE-2026-12610 sssd: Use-after-free crash in SSSD' 'sssd_pam' process - #2497650: CVE-2026-14476 sssd: sssd: GPO cache path traversal via unsanitized gPCFileSysPath allows Kerberos authentication bypass - #2497651: CVE-2026-14474 sssd: sssd: sudo LDAP provider searches entire directory tree for sudoRole objects by default, enabling privilege escalation

How to install

Updates may require up to 24 hours to propagate to mirrors. If the following command doesn't work, please retry later:

sudo dnf upgrade --refresh --advisory=FEDORA-2026-9ab663dcd4

This update has been submitted for testing by sbose.

a month ago

This update's test gating status has been changed to 'waiting'.

a month ago

This update's test gating status has been changed to 'failed'.

a month ago

This update's test gating status has been changed to 'waiting'.

a month ago

This update's test gating status has been changed to 'passed'.

a month ago

This update has been pushed to testing.

a month ago
User Icon filiperosset commented & provided feedback a month ago
karma

no regressions noted here

User Icon derekenz commented & provided feedback 4 weeks ago
karma

Works

This update can be pushed to stable now if the maintainer wishes

4 weeks ago

This update has been submitted for stable by bodhi.

2 weeks ago

This update has been pushed to stable.

2 weeks ago

Please log in to add feedback.

Metadata
Type
security
Severity
high
Karma
2
Signed
Content Type
RPM
Test Gating
Autopush Settings
Unstable by Karma
-3
Stable by Karma
3
Stable by Time
14 days
Dates
submitted
a month ago
in testing
a month ago
in stable
2 weeks ago
approved
4 weeks ago
BZ#2494777 CVE-2026-12610 sssd: Use-after-free crash in SSSD' 'sssd_pam' process [fedora-all]
0
0
BZ#2497650 CVE-2026-14476 sssd: sssd: GPO cache path traversal via unsanitized gPCFileSysPath allows Kerberos authentication bypass [fedora-all]
0
0
BZ#2497651 CVE-2026-14474 sssd: sssd: sudo LDAP provider searches entire directory tree for sudoRole objects by default, enabling privilege escalation [fedora-all]
0
0

Automated Test Results