| Index | index by Group | index by Distribution | index by Vendor | index by creation date | index by Name | Mirrors | Help | Search |
| Name: sssd-common | Distribution: AlmaLinux |
| Version: 2.13.1 | Vendor: AlmaLinux |
| Release: 2.el10 | Build date: Tue Jul 14 16:46:07 2026 |
| Group: Unspecified | Build host: arm64-builder01.almalinux.org |
| Size: 6648297 | Source RPM: sssd-2.13.1-2.el10.src.rpm |
| Packager: AlmaLinux Packaging Team <packager@almalinux.org> | |
| Url: https://github.com/SSSD/sssd/ | |
| Summary: Common files for the SSSD | |
Common files for the SSSD. The common package includes all the files needed to run a particular back end, however, the back ends are packaged in separate subpackages such as sssd-ldap.
GPL-3.0-or-later
* Thu Jul 02 2026 Madhuri Upadhye <mupadhye@redhat.com> - 2.13.1-2
- Resolves: RHEL-190529 CVE-2026-12610 sssd: Use-after-free crash in SSSD' 'sssd_pam' process
- Resolves: RHEL-185008 Regression in IPA + Idp authentication with keycloak
- Resolves: RHEL-111571 'sssctl config-check' does not work correctly for "Accessing AD with a MSA"
- Resolves: RHEL-192054 CVE-2026-14474 sssd: sudo ldap provider searches entire directory tree for sudorole objects by default, enabling privilege escalation
- Resolves: RHEL-192069 CVE-2026-14476 sssd: path traversal in SSSD AD GPO provider allows writing files outside GPO cache directory as root
* Wed Jun 10 2026 Sumit Bose <sbose@redhat.com> - 2.13.1-1
- Resolves: RHEL-183331 Rebase SSSD for RHEL 10.3
- Resolves: RHEL-178180 'sssctl analyze --help' shows incorrect command in usage field
- Resolves: RHEL-173663 [Regression] Cannot log in to FreeIPA account with password immediately after boot
- Resolves: RHEL-173660 SSSD 2.13 doesn't work in offline mode, generates plenty of Permission denied errors
- Resolves: RHEL-172303 SSSD: LDAP backend ('sssd_be') initialization fails if DNS in unresponsive
- Resolves: RHEL-151491 SSSD kerberos plugins export symbols which clash
- Resolves: RHEL-133013 /etc/hosts containing an entry with a name and alias but no IPv4 address results in sssd_be crash
- Resolves: RHEL-5054 Smart card reader with pinpad fails C_Login. (CKF_PROTECTED_AUTHENTICATION_PATH not handled correctly)
* Tue Apr 28 2026 Sumit Bose <sbose@redhat.com> - 2.13.0-1
- Resolves: RHEL-167873 - CVE-2026-6245 sssd: out-of-bounds read in the sssd [rhel-10.3]
- Resolves: RHEL-154156 - SSSD needs to add Plasma Login Manager to the PAM services whitelist for the AD provider
- Resolves: RHEL-142964 - Poor performance of `BE_REQ_INITGROUPS` handling by 'sssd_be' (LDAP RFC2307, no nested groups)
- Resolves: RHEL-138905 - [RFE] SSSD PAM: Support Microsoft AD PKINIT authentication indicator (ms-pkca) for pam_gssapi_indicators_map
- Resolves: RHEL-123943 - Man page update: man sssd_krb5_localauth_plugin – Missing disable = an2ln
- Resolves: RHEL-109754 - Performance impact with enumerate in SSSD > 2.7.3
- Resolves: RHEL-108116 - Concurrent child processes trigger unnecessarily backtrace
- Resolves: RHEL-5049 - Detect foreign security principals in AD group members and silently ignore them
* Tue Apr 14 2026 Tomas Halman <thalman@redhat.com> - 2.12.0-3
- Resolves: RHEL-167749 - SSSD IdP (Entra ID): listing group members does not work
- Resolves: RHEL-167757 - sssd-kcm fails to start if krb5_renew_interval is specified
* Thu Apr 02 2026 Tomas Halman <thalman@redhat.com> - 2.12.0-2
- Resolves: RHEL-148232 - Failed to resolve indirect group-members of nested non-POSIX group
* Thu Jan 15 2026 Sumit Bose <sbose@redhat.com> - 2.12.0-1
- Resolves: RHEL-139110 - Rebase SSSD for RHEL 10.2
- Resolves: RHEL-132552 - sssd_be: segfault at 8 ip 00007f6fd25b2b90 sp 00007ffc02dfbae0 error 4 in libsss_ipa.so[7f6fd25ae000+4d000]
- Resolves: RHEL-132505 - RFE: package LDAP provider support for subid ranges
- Resolves: RHEL-130571 - SSSD: change a default value of 'session_provider' sssd.conf option to 'none'
- Resolves: RHEL-129636 - sssd service fails to start after updating to 2.9.6-4 or 2.9.7-4
- Resolves: RHEL-128594 - 'sssd_nss' hangs when looking up an object by ID that has expired cache entry and filtered out by name
- Resolves: RHEL-127792 - Remove SSSD option ipa_enable_dns_sites
- Resolves: RHEL-120501 - Crash in 'sss_client/autofs/sss_autofs.c'
- Resolves: RHEL-120287 - CVE-2025-11561 sssd: SSSD default Kerberos configuration allows privilege escalation on AD-joined Linux systems [rhel-10.2]
- Resolves: RHEL-114468 - Spam in 'sssd_kcm.log' during normal operations
- Resolves: RHEL-113111 - Including innapropriate IPv6 addresses in dyndns_update
- Resolves: RHEL-104221 - The SSSD cache is filled with groups having GID=0, causing the cache index to grow excessively large. This, in turn, leads to timeouts
- Resolves: RHEL-94545 - When the user name of an AD user in an IPA-AD trust environment overwritten, the user private group, the users primary group, cannot be lookup up by the overwritten name.
- Resolves: RHEL-77184 - AD user in external group is not cleared when expiring the cache
- Resolves: RHEL-72935 - sss_override does not work on AD UPN
- Resolves: RHEL-11913 - GDM Support for IdM IdP feature and MFA [SSSD]
- Resolves: RHEL-4990 - [RFE] SSSD support for Azure AD / Microsoft Entra ID (or general direct support of OIDC authentication)
* Mon Sep 22 2025 Pavel Filipenský <pfilipen@redhat.com> - 2.11.1-3
- Related: RHEL-114545 - Rebase Samba to the latest 4.23.x release
* Thu Aug 14 2025 Alexey Tikhonov <atikhono@redhat.com> - 2.11.1-2
- Related: RHEL-77184 - AD user in external group is not cleared when expiring the cache
Patch used to fix this ticket causes a regression (RHEL-106987) and is being reverted.
* Thu Jul 31 2025 Alexey Tikhonov <atikhono@redhat.com> - 2.11.1-1
- Resolves: RHEL-95058 - Rebase SSSD for RHEL 10.1
- Resolves: RHEL-77184 - AD user in external group is not cleared when expiring the cache
* Fri Jun 13 2025 Alexey Tikhonov <atikhono@redhat.com> - 2.11.0-3
- Related: RHEL-89870 - Rebase Samba to the latest 4.22.x release
* Fri Jun 06 2025 Alexey Tikhonov <atikhono@redhat.com> - 2.11.0-2
- Resolves: RHEL-95058 - Rebase SSSD for RHEL 10.1
* Thu Jun 05 2025 Alexey Tikhonov <atikhono@redhat.com> - 2.11.0-1
- Resolves: RHEL-95058 - Rebase SSSD for RHEL 10.1
- Resolves: RHEL-4976 - [RFE] Continue searching other PKCS#11 tokens if certificates are not found
- Resolves: RHEL-87200 - SSSD fails to connect with ipv4_first when on a machine with only IPv6 and server is dual-stack
- Resolves: RHEL-25593 - Improve sssd-simple man page description
- Resolves: RHEL-14752 - [RFE] Add IPA subdomain support to allow IPA-IPA trust
- Resolves: RHEL-92569 - SSSD LDAPU1 Mapping braces problem
- Resolves: RHEL-4981 - p11_child currently has an infinite timeout
- Resolves: RHEL-5042 - IDM homedir %o is not working, returns /home/domain/user instead of AD POSIX unixHomeDir
- Resolves: RHEL-13086 - [RFE] Anonymous bind requests on RootDSE
- Resolves: RHEL-45824 - SSSD unable to enumerate LDAP groups if LDAP server contains any group with # character in their names
* Fri May 02 2025 Andrea Bolognani <abologna@redhat.com> - 2.10.2-4
- Resolves: RHEL-89474 - Fails to build on riscv64
* Mon Apr 07 2025 Alexey Tikhonov <atikhono@redhat.com> - 2.10.2-3.2
- Resolves: RHEL-79158 - Disk cache failure with large db sizes
* Wed Apr 02 2025 Alexey Tikhonov <atikhono@redhat.com> - 2.10.2-3.1
- Resolves: RHEL-79158 - Disk cache failure with large db sizes
* Wed Feb 12 2025 Alexey Tikhonov <atikhono@redhat.com> - 2.10.2-3
- Resolves: RHEL-78061 - 'sssd_kcm' leaks memory
* Mon Feb 10 2025 Alexey Tikhonov <atikhono@redhat.com> - 2.10.2-2
- Resolves: RHEL-78061 - 'sssd_kcm' leaks memory
* Wed Jan 29 2025 Alexey Tikhonov <atikhono@redhat.com> - 2.10.2-1
- Resolves: RHEL-62725 - Rebase SSSD for RHEL 10.0
* Wed Dec 18 2024 Alexey Tikhonov <atikhono@redhat.com> - 2.10.1-3
- Resolves: RHEL-62725 - Rebase SSSD for RHEL 10.0
* Wed Dec 18 2024 Alexey Tikhonov <atikhono@redhat.com> - 2.10.1-2
- Resolves: RHEL-62725 - Rebase SSSD for RHEL 10.0
* Tue Dec 10 2024 Alexey Tikhonov <atikhono@redhat.com> - 2.10.1-1
- Resolves: RHEL-62725 - Rebase SSSD for RHEL 10.0
- Resolves: RHEL-4984 - Mismatch between input and parsed domain name when default_domain_suffix is set.
- Resolves: RHEL-65848 - sssd password authentication broken in sssd-2.10.0~beta2-2 and later
- Resolves: RHEL-67669 - Label DP_OPT_DYNDNS_REFRESH_OFFSET has no corresponding option
- Resolves: RHEL-68421 - sssd ldap_child process segfaults when krb5.conf is invalid [rhel-10]
- Resolves: RHEL-66935 - Avoid log flooding in case an app keeps making invalid `getservbyport(0, ...)` request
- Resolves: RHEL-65736 - ipa: sudo commands doesn't check threshold correctly
- Resolves: RHEL-68319 - Please deprecate/remove ad_allow_remote_domain_local_groups
* Mon Oct 21 2024 Alexey Tikhonov <atikhono@redhat.com> - 2.10.0-3
- Related: RHEL-59777 - Rebase Samba to the latest 4.21.x release
* Tue Oct 15 2024 Alexey Tikhonov <atikhono@redhat.com> - 2.10.0-2
- Resolves: RHEL-62725 - Rebase SSSD for RHEL 10.0
* Tue Oct 15 2024 Alexey Tikhonov <atikhono@redhat.com> - 2.10.0-1
- Resolves: RHEL-62725 - Rebase SSSD for RHEL 10.0
- Resolves: RHEL-56701 - sss_ssh_knownhosts is breaking ansible-pull
- Resolves: RHEL-55993 - SSSD needs an option to indicate if the LDAP server can run the exop with an anonymous bind or not
* Thu Aug 22 2024 Alexey Tikhonov <atikhono@redhat.com> - 2.10.0~beta2-3
- Resolves: RHEL-50243 - Please install sssd-polkit-rules by default
* Fri Aug 02 2024 Alexey Tikhonov <atikhono@redhat.com> - 2.10.0~beta2-2
- Resolves: RHEL-51891 - [RHEL-10]logrotate.service fails to start because /var/log/sssd has insecure permission
- Resolves: RHEL-52400 - SYSDB: remove index on dataExpireTimestamp [rhel-10]
- Resolves: RHEL-50243 - Please install sssd-polkit-rules by default
/etc/logrotate.d /etc/logrotate.d/sssd /etc/pam.d/sssd-shadowutils /etc/rwtab.d /etc/rwtab.d/sssd /etc/sssd /etc/sssd/conf.d /etc/sssd/pki /etc/sssd/sssd.conf /run/sssd /usr/bin/sss_ssh_authorizedkeys /usr/bin/sss_ssh_knownhosts /usr/bin/sss_ssh_knownhostsproxy /usr/lib/.build-id /usr/lib/.build-id/0c /usr/lib/.build-id/0c/16339ca6fda99a160f9bb5b1214df490797220 /usr/lib/.build-id/11 /usr/lib/.build-id/11/ce25f9f5e30668fba5fc3aeb3e59fb5b10cef8 /usr/lib/.build-id/11/eb5778a82bad54962b52bff8e5330b41658f4b /usr/lib/.build-id/12 /usr/lib/.build-id/12/a56c1056c88ca61800a70441f4544cce598ac6 /usr/lib/.build-id/29 /usr/lib/.build-id/29/d6db0d832e447ad9b6f02ed14ce3ace2061179 /usr/lib/.build-id/2f /usr/lib/.build-id/2f/5823ecf8f190dc89bc9b43e2188cac96d1abf8 /usr/lib/.build-id/32 /usr/lib/.build-id/32/0d78ec6cc780dbad85ed7adcaf096626404bdb /usr/lib/.build-id/3d /usr/lib/.build-id/3d/6f2a0e16832cf09d14f24049f2c93f8c082826 /usr/lib/.build-id/41 /usr/lib/.build-id/41/8387c71975d7656fcd2a6e0584fcdd2eb8d5b4 /usr/lib/.build-id/41/e21d2b207f0638078b13717693aa992652ce97 /usr/lib/.build-id/42 /usr/lib/.build-id/42/4d26d1aed4f0fb90c8c3d2c0459455f9fc2e48 /usr/lib/.build-id/44 /usr/lib/.build-id/44/053ec2c7aaf6ef8f7f8900eae3c785ae07646c /usr/lib/.build-id/4d /usr/lib/.build-id/4d/4f3d81fb87ccba8ab338a57ffeef3d4981e781 /usr/lib/.build-id/5c /usr/lib/.build-id/5c/98f8ba748179613173bf42205ec906aca8b241 /usr/lib/.build-id/6b /usr/lib/.build-id/6b/4005214c47c412dceefdfa608ff173ab7af381 /usr/lib/.build-id/6d /usr/lib/.build-id/6d/be8d8f248ec4aec8dd08dade938c77f44aeff6 /usr/lib/.build-id/75 /usr/lib/.build-id/75/e36bc003d7bac8ee049d7cf48e5915f805f168 /usr/lib/.build-id/93 /usr/lib/.build-id/93/aa609c956363d945095d37fbe381da80939880 /usr/lib/.build-id/95 /usr/lib/.build-id/95/8781a5d0a1b3f259152b330e717dce268e9853 /usr/lib/.build-id/96 /usr/lib/.build-id/96/c28a6cce4b4e0a484bdc1ae9f35accca3e5fa1 /usr/lib/.build-id/9f /usr/lib/.build-id/9f/21eab54a92bb466565419f058ca0ce39dd75b2 /usr/lib/.build-id/b2 /usr/lib/.build-id/b2/32a469d0c2b2a00c5294f7a00b7cab30b492f2 /usr/lib/.build-id/bb /usr/lib/.build-id/bb/e80ca26e031670b7d57fa5fd9f4808b073d2b7 /usr/lib/.build-id/c7 /usr/lib/.build-id/c7/e1a7b43b5fc21bb0e633c4c09ccb53038a0735 /usr/lib/.build-id/d1 /usr/lib/.build-id/d1/4a94340f1fbc8e0cf5d8a0e71e0ced2d16fb05 /usr/lib/.build-id/e0 /usr/lib/.build-id/e0/bc9257259d35e4879aa45c162b56d98ff73abe /usr/lib/.build-id/e6 /usr/lib/.build-id/e6/a1b89f30023f16a09dd3bb2c36a6415b5362c3 /usr/lib/.build-id/ee /usr/lib/.build-id/ee/edce11d0e2981ddacab3be9528d21e2f594031 /usr/lib/.build-id/f0 /usr/lib/.build-id/f0/9ac8203c52420dc5bbaa0dc9ead395d92d572d /usr/lib/systemd/system/sssd-autofs.service /usr/lib/systemd/system/sssd-autofs.socket /usr/lib/systemd/system/sssd-nss.service /usr/lib/systemd/system/sssd-nss.socket /usr/lib/systemd/system/sssd-pac.service /usr/lib/systemd/system/sssd-pac.socket /usr/lib/systemd/system/sssd-pam.service /usr/lib/systemd/system/sssd-pam.socket /usr/lib/systemd/system/sssd-ssh.service /usr/lib/systemd/system/sssd-ssh.socket /usr/lib/systemd/system/sssd-sudo.service /usr/lib/systemd/system/sssd-sudo.socket /usr/lib/systemd/system/sssd.service /usr/lib/sysusers.d/sssd.conf /usr/lib/tmpfiles.d/sssd.conf /usr/lib64/samba/ldb/memberof.so /usr/lib64/sssd /usr/lib64/sssd/conf /usr/lib64/sssd/conf/sssd.conf /usr/lib64/sssd/libifp_iface.so /usr/lib64/sssd/libifp_iface_sync.so /usr/lib64/sssd/libsss_cert.so /usr/lib64/sssd/libsss_child.so /usr/lib64/sssd/libsss_crypt.so /usr/lib64/sssd/libsss_debug.so /usr/lib64/sssd/libsss_iface.so /usr/lib64/sssd/libsss_iface_sync.so /usr/lib64/sssd/libsss_krb5_common.so /usr/lib64/sssd/libsss_ldap_common.so /usr/lib64/sssd/libsss_sbus.so /usr/lib64/sssd/libsss_sbus_sync.so /usr/lib64/sssd/libsss_simple.so /usr/lib64/sssd/libsss_util.so /usr/libexec/sssd /usr/libexec/sssd/p11_child /usr/libexec/sssd/sss_signal /usr/libexec/sssd/sssd_autofs /usr/libexec/sssd/sssd_be /usr/libexec/sssd/sssd_check_socket_activated_responders /usr/libexec/sssd/sssd_nss /usr/libexec/sssd/sssd_pam /usr/libexec/sssd/sssd_ssh /usr/libexec/sssd/sssd_sudo /usr/sbin/sss_cache /usr/sbin/sssd /usr/share/doc/sssd-common /usr/share/doc/sssd-common/sssd-example.conf /usr/share/licenses/sssd-common /usr/share/licenses/sssd-common/COPYING /usr/share/locale/bg/LC_MESSAGES/sssd.mo /usr/share/locale/br/LC_MESSAGES/sssd.mo /usr/share/locale/ca/LC_MESSAGES/sssd.mo /usr/share/locale/cs/LC_MESSAGES/sssd.mo /usr/share/locale/de/LC_MESSAGES/sssd.mo /usr/share/locale/es/LC_MESSAGES/sssd.mo /usr/share/locale/eu/LC_MESSAGES/sssd.mo /usr/share/locale/fi/LC_MESSAGES/sssd.mo /usr/share/locale/fr/LC_MESSAGES/sssd.mo /usr/share/locale/hu/LC_MESSAGES/sssd.mo /usr/share/locale/id/LC_MESSAGES/sssd.mo /usr/share/locale/it/LC_MESSAGES/sssd.mo /usr/share/locale/ja/LC_MESSAGES/sssd.mo /usr/share/locale/ka/LC_MESSAGES/sssd.mo /usr/share/locale/ko/LC_MESSAGES/sssd.mo /usr/share/locale/lv/LC_MESSAGES/sssd.mo /usr/share/locale/nb/LC_MESSAGES/sssd.mo /usr/share/locale/nl/LC_MESSAGES/sssd.mo /usr/share/locale/pl/LC_MESSAGES/sssd.mo /usr/share/locale/pt/LC_MESSAGES/sssd.mo /usr/share/locale/pt_BR/LC_MESSAGES/sssd.mo /usr/share/locale/ru/LC_MESSAGES/sssd.mo /usr/share/locale/sv/LC_MESSAGES/sssd.mo /usr/share/locale/tg/LC_MESSAGES/sssd.mo /usr/share/locale/tr/LC_MESSAGES/sssd.mo /usr/share/locale/uk/LC_MESSAGES/sssd.mo /usr/share/locale/zh_CN/LC_MESSAGES/sssd.mo /usr/share/locale/zh_TW/LC_MESSAGES/sssd.mo /usr/share/man/man1/sss_ssh_authorizedkeys.1.gz /usr/share/man/man1/sss_ssh_knownhosts.1.gz /usr/share/man/man5/sssd-session-recording.5.gz /usr/share/man/man5/sssd-simple.5.gz /usr/share/man/man5/sssd-sudo.5.gz /usr/share/man/man5/sssd-systemtap.5.gz /usr/share/man/man5/sssd.conf.5.gz /usr/share/man/man8/sss_cache.8.gz /usr/share/man/man8/sssd.8.gz /usr/share/man/pt/man1/sss_ssh_authorizedkeys.1.gz /usr/share/man/pt/man1/sss_ssh_knownhosts.1.gz /usr/share/man/pt/man5/sssd-idp.5.gz /usr/share/man/pt/man5/sssd-session-recording.5.gz /usr/share/man/pt/man5/sssd-simple.5.gz /usr/share/man/pt/man5/sssd-sudo.5.gz /usr/share/man/pt/man5/sssd-systemtap.5.gz /usr/share/man/pt/man5/sssd.conf.5.gz /usr/share/man/pt/man8/sss_cache.8.gz /usr/share/man/pt/man8/sssd.8.gz /usr/share/man/ru/man1/sss_ssh_authorizedkeys.1.gz /usr/share/man/ru/man1/sss_ssh_knownhosts.1.gz /usr/share/man/ru/man5/sssd-idp.5.gz /usr/share/man/ru/man5/sssd-session-recording.5.gz /usr/share/man/ru/man5/sssd-simple.5.gz /usr/share/man/ru/man5/sssd-sudo.5.gz /usr/share/man/ru/man5/sssd-systemtap.5.gz /usr/share/man/ru/man5/sssd.conf.5.gz /usr/share/man/ru/man8/sss_cache.8.gz /usr/share/man/ru/man8/sssd.8.gz /usr/share/man/sv/man1/sss_ssh_authorizedkeys.1.gz /usr/share/man/sv/man1/sss_ssh_knownhosts.1.gz /usr/share/man/sv/man5/sssd-idp.5.gz /usr/share/man/sv/man5/sssd-session-recording.5.gz /usr/share/man/sv/man5/sssd-simple.5.gz /usr/share/man/sv/man5/sssd-sudo.5.gz /usr/share/man/sv/man5/sssd-systemtap.5.gz /usr/share/man/sv/man5/sssd.conf.5.gz /usr/share/man/sv/man8/sss_cache.8.gz /usr/share/man/sv/man8/sssd.8.gz /usr/share/man/uk/man1/sss_ssh_authorizedkeys.1.gz /usr/share/man/uk/man1/sss_ssh_knownhosts.1.gz /usr/share/man/uk/man5/sssd-idp.5.gz /usr/share/man/uk/man5/sssd-session-recording.5.gz /usr/share/man/uk/man5/sssd-simple.5.gz /usr/share/man/uk/man5/sssd-sudo.5.gz /usr/share/man/uk/man5/sssd-systemtap.5.gz /usr/share/man/uk/man5/sssd.conf.5.gz /usr/share/man/uk/man8/sss_cache.8.gz /usr/share/man/uk/man8/sssd.8.gz /usr/share/polkit-1/rules.d/sssd-pcsc.rules /usr/share/polkit-1/rules.d/sssd-realmd.rules /usr/share/sssd /usr/share/sssd/cfg_rules.ini /usr/share/sssd/systemtap /usr/share/sssd/systemtap/dp_request.stp /usr/share/sssd/systemtap/id_perf.stp /usr/share/sssd/systemtap/ldap_perf.stp /usr/share/sssd/systemtap/nested_group_perf.stp /usr/share/systemtap /usr/share/systemtap/tapset /usr/share/systemtap/tapset/sssd.stp /usr/share/systemtap/tapset/sssd_functions.stp /var/cache/krb5rcache /var/lib/sss /var/lib/sss/db /var/lib/sss/deskprofile /var/lib/sss/gpo_cache /var/lib/sss/mc /var/lib/sss/pipes /var/lib/sss/pipes/private /var/lib/sss/pubconf /var/lib/sss/secrets /var/log/sssd
Generated by rpm2html 1.8.1
Fabrice Bellet, Sun Jul 26 07:07:36 2026