| Index | index by Group | index by Distribution | index by Vendor | index by creation date | index by Name | Mirrors | Help | Search |
| Name: sssd-common | Distribution: AlmaLinux |
| Version: 2.13.1 | Vendor: AlmaLinux |
| Release: 2.el10 | Build date: Tue Jul 14 17:02:26 2026 |
| Group: Unspecified | Build host: ppc64le-builder02.almalinux.org |
| Size: 7430985 | Source RPM: sssd-2.13.1-2.el10.src.rpm |
| Packager: AlmaLinux Packaging Team <packager@almalinux.org> | |
| Url: https://github.com/SSSD/sssd/ | |
| Summary: Common files for the SSSD | |
Common files for the SSSD. The common package includes all the files needed to run a particular back end, however, the back ends are packaged in separate subpackages such as sssd-ldap.
GPL-3.0-or-later
* Thu Jul 02 2026 Madhuri Upadhye <mupadhye@redhat.com> - 2.13.1-2
- Resolves: RHEL-190529 CVE-2026-12610 sssd: Use-after-free crash in SSSD' 'sssd_pam' process
- Resolves: RHEL-185008 Regression in IPA + Idp authentication with keycloak
- Resolves: RHEL-111571 'sssctl config-check' does not work correctly for "Accessing AD with a MSA"
- Resolves: RHEL-192054 CVE-2026-14474 sssd: sudo ldap provider searches entire directory tree for sudorole objects by default, enabling privilege escalation
- Resolves: RHEL-192069 CVE-2026-14476 sssd: path traversal in SSSD AD GPO provider allows writing files outside GPO cache directory as root
* Wed Jun 10 2026 Sumit Bose <sbose@redhat.com> - 2.13.1-1
- Resolves: RHEL-183331 Rebase SSSD for RHEL 10.3
- Resolves: RHEL-178180 'sssctl analyze --help' shows incorrect command in usage field
- Resolves: RHEL-173663 [Regression] Cannot log in to FreeIPA account with password immediately after boot
- Resolves: RHEL-173660 SSSD 2.13 doesn't work in offline mode, generates plenty of Permission denied errors
- Resolves: RHEL-172303 SSSD: LDAP backend ('sssd_be') initialization fails if DNS in unresponsive
- Resolves: RHEL-151491 SSSD kerberos plugins export symbols which clash
- Resolves: RHEL-133013 /etc/hosts containing an entry with a name and alias but no IPv4 address results in sssd_be crash
- Resolves: RHEL-5054 Smart card reader with pinpad fails C_Login. (CKF_PROTECTED_AUTHENTICATION_PATH not handled correctly)
* Tue Apr 28 2026 Sumit Bose <sbose@redhat.com> - 2.13.0-1
- Resolves: RHEL-167873 - CVE-2026-6245 sssd: out-of-bounds read in the sssd [rhel-10.3]
- Resolves: RHEL-154156 - SSSD needs to add Plasma Login Manager to the PAM services whitelist for the AD provider
- Resolves: RHEL-142964 - Poor performance of `BE_REQ_INITGROUPS` handling by 'sssd_be' (LDAP RFC2307, no nested groups)
- Resolves: RHEL-138905 - [RFE] SSSD PAM: Support Microsoft AD PKINIT authentication indicator (ms-pkca) for pam_gssapi_indicators_map
- Resolves: RHEL-123943 - Man page update: man sssd_krb5_localauth_plugin – Missing disable = an2ln
- Resolves: RHEL-109754 - Performance impact with enumerate in SSSD > 2.7.3
- Resolves: RHEL-108116 - Concurrent child processes trigger unnecessarily backtrace
- Resolves: RHEL-5049 - Detect foreign security principals in AD group members and silently ignore them
* Tue Apr 14 2026 Tomas Halman <thalman@redhat.com> - 2.12.0-3
- Resolves: RHEL-167749 - SSSD IdP (Entra ID): listing group members does not work
- Resolves: RHEL-167757 - sssd-kcm fails to start if krb5_renew_interval is specified
* Thu Apr 02 2026 Tomas Halman <thalman@redhat.com> - 2.12.0-2
- Resolves: RHEL-148232 - Failed to resolve indirect group-members of nested non-POSIX group
* Thu Jan 15 2026 Sumit Bose <sbose@redhat.com> - 2.12.0-1
- Resolves: RHEL-139110 - Rebase SSSD for RHEL 10.2
- Resolves: RHEL-132552 - sssd_be: segfault at 8 ip 00007f6fd25b2b90 sp 00007ffc02dfbae0 error 4 in libsss_ipa.so[7f6fd25ae000+4d000]
- Resolves: RHEL-132505 - RFE: package LDAP provider support for subid ranges
- Resolves: RHEL-130571 - SSSD: change a default value of 'session_provider' sssd.conf option to 'none'
- Resolves: RHEL-129636 - sssd service fails to start after updating to 2.9.6-4 or 2.9.7-4
- Resolves: RHEL-128594 - 'sssd_nss' hangs when looking up an object by ID that has expired cache entry and filtered out by name
- Resolves: RHEL-127792 - Remove SSSD option ipa_enable_dns_sites
- Resolves: RHEL-120501 - Crash in 'sss_client/autofs/sss_autofs.c'
- Resolves: RHEL-120287 - CVE-2025-11561 sssd: SSSD default Kerberos configuration allows privilege escalation on AD-joined Linux systems [rhel-10.2]
- Resolves: RHEL-114468 - Spam in 'sssd_kcm.log' during normal operations
- Resolves: RHEL-113111 - Including innapropriate IPv6 addresses in dyndns_update
- Resolves: RHEL-104221 - The SSSD cache is filled with groups having GID=0, causing the cache index to grow excessively large. This, in turn, leads to timeouts
- Resolves: RHEL-94545 - When the user name of an AD user in an IPA-AD trust environment overwritten, the user private group, the users primary group, cannot be lookup up by the overwritten name.
- Resolves: RHEL-77184 - AD user in external group is not cleared when expiring the cache
- Resolves: RHEL-72935 - sss_override does not work on AD UPN
- Resolves: RHEL-11913 - GDM Support for IdM IdP feature and MFA [SSSD]
- Resolves: RHEL-4990 - [RFE] SSSD support for Azure AD / Microsoft Entra ID (or general direct support of OIDC authentication)
* Mon Sep 22 2025 Pavel Filipenský <pfilipen@redhat.com> - 2.11.1-3
- Related: RHEL-114545 - Rebase Samba to the latest 4.23.x release
* Thu Aug 14 2025 Alexey Tikhonov <atikhono@redhat.com> - 2.11.1-2
- Related: RHEL-77184 - AD user in external group is not cleared when expiring the cache
Patch used to fix this ticket causes a regression (RHEL-106987) and is being reverted.
* Thu Jul 31 2025 Alexey Tikhonov <atikhono@redhat.com> - 2.11.1-1
- Resolves: RHEL-95058 - Rebase SSSD for RHEL 10.1
- Resolves: RHEL-77184 - AD user in external group is not cleared when expiring the cache
* Fri Jun 13 2025 Alexey Tikhonov <atikhono@redhat.com> - 2.11.0-3
- Related: RHEL-89870 - Rebase Samba to the latest 4.22.x release
* Fri Jun 06 2025 Alexey Tikhonov <atikhono@redhat.com> - 2.11.0-2
- Resolves: RHEL-95058 - Rebase SSSD for RHEL 10.1
* Thu Jun 05 2025 Alexey Tikhonov <atikhono@redhat.com> - 2.11.0-1
- Resolves: RHEL-95058 - Rebase SSSD for RHEL 10.1
- Resolves: RHEL-4976 - [RFE] Continue searching other PKCS#11 tokens if certificates are not found
- Resolves: RHEL-87200 - SSSD fails to connect with ipv4_first when on a machine with only IPv6 and server is dual-stack
- Resolves: RHEL-25593 - Improve sssd-simple man page description
- Resolves: RHEL-14752 - [RFE] Add IPA subdomain support to allow IPA-IPA trust
- Resolves: RHEL-92569 - SSSD LDAPU1 Mapping braces problem
- Resolves: RHEL-4981 - p11_child currently has an infinite timeout
- Resolves: RHEL-5042 - IDM homedir %o is not working, returns /home/domain/user instead of AD POSIX unixHomeDir
- Resolves: RHEL-13086 - [RFE] Anonymous bind requests on RootDSE
- Resolves: RHEL-45824 - SSSD unable to enumerate LDAP groups if LDAP server contains any group with # character in their names
* Fri May 02 2025 Andrea Bolognani <abologna@redhat.com> - 2.10.2-4
- Resolves: RHEL-89474 - Fails to build on riscv64
* Mon Apr 07 2025 Alexey Tikhonov <atikhono@redhat.com> - 2.10.2-3.2
- Resolves: RHEL-79158 - Disk cache failure with large db sizes
* Wed Apr 02 2025 Alexey Tikhonov <atikhono@redhat.com> - 2.10.2-3.1
- Resolves: RHEL-79158 - Disk cache failure with large db sizes
* Wed Feb 12 2025 Alexey Tikhonov <atikhono@redhat.com> - 2.10.2-3
- Resolves: RHEL-78061 - 'sssd_kcm' leaks memory
* Mon Feb 10 2025 Alexey Tikhonov <atikhono@redhat.com> - 2.10.2-2
- Resolves: RHEL-78061 - 'sssd_kcm' leaks memory
* Wed Jan 29 2025 Alexey Tikhonov <atikhono@redhat.com> - 2.10.2-1
- Resolves: RHEL-62725 - Rebase SSSD for RHEL 10.0
* Wed Dec 18 2024 Alexey Tikhonov <atikhono@redhat.com> - 2.10.1-3
- Resolves: RHEL-62725 - Rebase SSSD for RHEL 10.0
* Wed Dec 18 2024 Alexey Tikhonov <atikhono@redhat.com> - 2.10.1-2
- Resolves: RHEL-62725 - Rebase SSSD for RHEL 10.0
* Tue Dec 10 2024 Alexey Tikhonov <atikhono@redhat.com> - 2.10.1-1
- Resolves: RHEL-62725 - Rebase SSSD for RHEL 10.0
- Resolves: RHEL-4984 - Mismatch between input and parsed domain name when default_domain_suffix is set.
- Resolves: RHEL-65848 - sssd password authentication broken in sssd-2.10.0~beta2-2 and later
- Resolves: RHEL-67669 - Label DP_OPT_DYNDNS_REFRESH_OFFSET has no corresponding option
- Resolves: RHEL-68421 - sssd ldap_child process segfaults when krb5.conf is invalid [rhel-10]
- Resolves: RHEL-66935 - Avoid log flooding in case an app keeps making invalid `getservbyport(0, ...)` request
- Resolves: RHEL-65736 - ipa: sudo commands doesn't check threshold correctly
- Resolves: RHEL-68319 - Please deprecate/remove ad_allow_remote_domain_local_groups
* Mon Oct 21 2024 Alexey Tikhonov <atikhono@redhat.com> - 2.10.0-3
- Related: RHEL-59777 - Rebase Samba to the latest 4.21.x release
* Tue Oct 15 2024 Alexey Tikhonov <atikhono@redhat.com> - 2.10.0-2
- Resolves: RHEL-62725 - Rebase SSSD for RHEL 10.0
* Tue Oct 15 2024 Alexey Tikhonov <atikhono@redhat.com> - 2.10.0-1
- Resolves: RHEL-62725 - Rebase SSSD for RHEL 10.0
- Resolves: RHEL-56701 - sss_ssh_knownhosts is breaking ansible-pull
- Resolves: RHEL-55993 - SSSD needs an option to indicate if the LDAP server can run the exop with an anonymous bind or not
* Thu Aug 22 2024 Alexey Tikhonov <atikhono@redhat.com> - 2.10.0~beta2-3
- Resolves: RHEL-50243 - Please install sssd-polkit-rules by default
* Fri Aug 02 2024 Alexey Tikhonov <atikhono@redhat.com> - 2.10.0~beta2-2
- Resolves: RHEL-51891 - [RHEL-10]logrotate.service fails to start because /var/log/sssd has insecure permission
- Resolves: RHEL-52400 - SYSDB: remove index on dataExpireTimestamp [rhel-10]
- Resolves: RHEL-50243 - Please install sssd-polkit-rules by default
/etc/logrotate.d /etc/logrotate.d/sssd /etc/pam.d/sssd-shadowutils /etc/rwtab.d /etc/rwtab.d/sssd /etc/sssd /etc/sssd/conf.d /etc/sssd/pki /etc/sssd/sssd.conf /run/sssd /usr/bin/sss_ssh_authorizedkeys /usr/bin/sss_ssh_knownhosts /usr/bin/sss_ssh_knownhostsproxy /usr/lib/.build-id /usr/lib/.build-id/02 /usr/lib/.build-id/02/adda3c79603a0650bb23ab9a8be40ebc392e65 /usr/lib/.build-id/03 /usr/lib/.build-id/03/07aa4308ee50c58bd8b7dc58ce0d86fde9f6d2 /usr/lib/.build-id/03/1f5666842fe87b44c2e568a28a07b8e90ef578 /usr/lib/.build-id/04 /usr/lib/.build-id/04/927f83d44edb391fb64e9dc166d0ea8b070697 /usr/lib/.build-id/06 /usr/lib/.build-id/06/927d60aff49f779b59199d75a594276ad2e3aa /usr/lib/.build-id/08 /usr/lib/.build-id/08/69e3aff733d4a5242408322ed1afe1d274954d /usr/lib/.build-id/10 /usr/lib/.build-id/10/91c79d641148dd47acc85a8f9b4c52ecde13d9 /usr/lib/.build-id/16 /usr/lib/.build-id/16/99c690cc7d6f4bdc0f3008f7dd41826e7d50da /usr/lib/.build-id/2e /usr/lib/.build-id/2e/733ef8bb7ce29fbdd020c7aa305fbc6ba18798 /usr/lib/.build-id/33 /usr/lib/.build-id/33/cecdc708efa4ddae82b0543ae1e54d3fae06e0 /usr/lib/.build-id/35 /usr/lib/.build-id/35/30c475c55e99b228eba6617184bd5107f8200b /usr/lib/.build-id/4c /usr/lib/.build-id/4c/eb541f26d2b6af1a25cb0614abf3a3b1286720 /usr/lib/.build-id/60 /usr/lib/.build-id/60/fbc1ecbf510faf3c60ad7f3b0f7d56ae4ac902 /usr/lib/.build-id/69 /usr/lib/.build-id/69/3af39f501d76166c51fcb9fc0e5c4706a9290b /usr/lib/.build-id/6d /usr/lib/.build-id/6d/abfdb0a91934cd5c5cf042aa2fd9461fdcf0e4 /usr/lib/.build-id/74 /usr/lib/.build-id/74/bc761b694251cdc3436869078cd22dece00d35 /usr/lib/.build-id/79 /usr/lib/.build-id/79/9a106b1df78c6c909d9ec9cf032ee81c27a771 /usr/lib/.build-id/7c /usr/lib/.build-id/7c/7b20991e56cf42f2307569eb4daf29677d191f /usr/lib/.build-id/86 /usr/lib/.build-id/86/1c1eadc9e201cd6adee361df2d156176ae02dc /usr/lib/.build-id/a6 /usr/lib/.build-id/a6/9c29202513b3e5b82d845cd7cd9580569c4ebb /usr/lib/.build-id/ae /usr/lib/.build-id/ae/4aa17bf06dd5a28decab528415e02f7fc7f09a /usr/lib/.build-id/b2 /usr/lib/.build-id/b2/f34c639223f15d18aa247e57e7faa3a8daadec /usr/lib/.build-id/b4 /usr/lib/.build-id/b4/61472ea47c8ccb510f4fc8da8f1e7dfe2110f8 /usr/lib/.build-id/b9 /usr/lib/.build-id/b9/297db611e3180ca505536f9c7d808e5ff848ed /usr/lib/.build-id/c6 /usr/lib/.build-id/c6/6f772bdee7aeaf68d4ff09794eefb2fc001592 /usr/lib/.build-id/d5 /usr/lib/.build-id/d5/573f8ef50102405c13fa062fa0ca74e61afaa6 /usr/lib/.build-id/df /usr/lib/.build-id/df/5472d6bc243e22ddd48beedb7ca212f80e0ad2 /usr/lib/.build-id/f4 /usr/lib/.build-id/f4/95361e30772434b42c46aa44c0837927969a04 /usr/lib/.build-id/f6 /usr/lib/.build-id/f6/133ed1d31b6911cbc2bc5c0f5750efa15bfde0 /usr/lib/systemd/system/sssd-autofs.service /usr/lib/systemd/system/sssd-autofs.socket /usr/lib/systemd/system/sssd-nss.service /usr/lib/systemd/system/sssd-nss.socket /usr/lib/systemd/system/sssd-pac.service /usr/lib/systemd/system/sssd-pac.socket /usr/lib/systemd/system/sssd-pam.service /usr/lib/systemd/system/sssd-pam.socket /usr/lib/systemd/system/sssd-ssh.service /usr/lib/systemd/system/sssd-ssh.socket /usr/lib/systemd/system/sssd-sudo.service /usr/lib/systemd/system/sssd-sudo.socket /usr/lib/systemd/system/sssd.service /usr/lib/sysusers.d/sssd.conf /usr/lib/tmpfiles.d/sssd.conf /usr/lib64/samba/ldb/memberof.so /usr/lib64/sssd /usr/lib64/sssd/conf /usr/lib64/sssd/conf/sssd.conf /usr/lib64/sssd/libifp_iface.so /usr/lib64/sssd/libifp_iface_sync.so /usr/lib64/sssd/libsss_cert.so /usr/lib64/sssd/libsss_child.so /usr/lib64/sssd/libsss_crypt.so /usr/lib64/sssd/libsss_debug.so /usr/lib64/sssd/libsss_iface.so /usr/lib64/sssd/libsss_iface_sync.so /usr/lib64/sssd/libsss_krb5_common.so /usr/lib64/sssd/libsss_ldap_common.so /usr/lib64/sssd/libsss_sbus.so /usr/lib64/sssd/libsss_sbus_sync.so /usr/lib64/sssd/libsss_simple.so /usr/lib64/sssd/libsss_util.so /usr/libexec/sssd /usr/libexec/sssd/p11_child /usr/libexec/sssd/sss_signal /usr/libexec/sssd/sssd_autofs /usr/libexec/sssd/sssd_be /usr/libexec/sssd/sssd_check_socket_activated_responders /usr/libexec/sssd/sssd_nss /usr/libexec/sssd/sssd_pam /usr/libexec/sssd/sssd_ssh /usr/libexec/sssd/sssd_sudo /usr/sbin/sss_cache /usr/sbin/sssd /usr/share/doc/sssd-common /usr/share/doc/sssd-common/sssd-example.conf /usr/share/licenses/sssd-common /usr/share/licenses/sssd-common/COPYING /usr/share/locale/bg/LC_MESSAGES/sssd.mo /usr/share/locale/br/LC_MESSAGES/sssd.mo /usr/share/locale/ca/LC_MESSAGES/sssd.mo /usr/share/locale/cs/LC_MESSAGES/sssd.mo /usr/share/locale/de/LC_MESSAGES/sssd.mo /usr/share/locale/es/LC_MESSAGES/sssd.mo /usr/share/locale/eu/LC_MESSAGES/sssd.mo /usr/share/locale/fi/LC_MESSAGES/sssd.mo /usr/share/locale/fr/LC_MESSAGES/sssd.mo /usr/share/locale/hu/LC_MESSAGES/sssd.mo /usr/share/locale/id/LC_MESSAGES/sssd.mo /usr/share/locale/it/LC_MESSAGES/sssd.mo /usr/share/locale/ja/LC_MESSAGES/sssd.mo /usr/share/locale/ka/LC_MESSAGES/sssd.mo /usr/share/locale/ko/LC_MESSAGES/sssd.mo /usr/share/locale/lv/LC_MESSAGES/sssd.mo /usr/share/locale/nb/LC_MESSAGES/sssd.mo /usr/share/locale/nl/LC_MESSAGES/sssd.mo /usr/share/locale/pl/LC_MESSAGES/sssd.mo /usr/share/locale/pt/LC_MESSAGES/sssd.mo /usr/share/locale/pt_BR/LC_MESSAGES/sssd.mo /usr/share/locale/ru/LC_MESSAGES/sssd.mo /usr/share/locale/sv/LC_MESSAGES/sssd.mo /usr/share/locale/tg/LC_MESSAGES/sssd.mo /usr/share/locale/tr/LC_MESSAGES/sssd.mo /usr/share/locale/uk/LC_MESSAGES/sssd.mo /usr/share/locale/zh_CN/LC_MESSAGES/sssd.mo /usr/share/locale/zh_TW/LC_MESSAGES/sssd.mo /usr/share/man/man1/sss_ssh_authorizedkeys.1.gz /usr/share/man/man1/sss_ssh_knownhosts.1.gz /usr/share/man/man5/sssd-session-recording.5.gz /usr/share/man/man5/sssd-simple.5.gz /usr/share/man/man5/sssd-sudo.5.gz /usr/share/man/man5/sssd-systemtap.5.gz /usr/share/man/man5/sssd.conf.5.gz /usr/share/man/man8/sss_cache.8.gz /usr/share/man/man8/sssd.8.gz /usr/share/man/pt/man1/sss_ssh_authorizedkeys.1.gz /usr/share/man/pt/man1/sss_ssh_knownhosts.1.gz /usr/share/man/pt/man5/sssd-idp.5.gz /usr/share/man/pt/man5/sssd-session-recording.5.gz /usr/share/man/pt/man5/sssd-simple.5.gz /usr/share/man/pt/man5/sssd-sudo.5.gz /usr/share/man/pt/man5/sssd-systemtap.5.gz /usr/share/man/pt/man5/sssd.conf.5.gz /usr/share/man/pt/man8/sss_cache.8.gz /usr/share/man/pt/man8/sssd.8.gz /usr/share/man/ru/man1/sss_ssh_authorizedkeys.1.gz /usr/share/man/ru/man1/sss_ssh_knownhosts.1.gz /usr/share/man/ru/man5/sssd-idp.5.gz /usr/share/man/ru/man5/sssd-session-recording.5.gz /usr/share/man/ru/man5/sssd-simple.5.gz /usr/share/man/ru/man5/sssd-sudo.5.gz /usr/share/man/ru/man5/sssd-systemtap.5.gz /usr/share/man/ru/man5/sssd.conf.5.gz /usr/share/man/ru/man8/sss_cache.8.gz /usr/share/man/ru/man8/sssd.8.gz /usr/share/man/sv/man1/sss_ssh_authorizedkeys.1.gz /usr/share/man/sv/man1/sss_ssh_knownhosts.1.gz /usr/share/man/sv/man5/sssd-idp.5.gz /usr/share/man/sv/man5/sssd-session-recording.5.gz /usr/share/man/sv/man5/sssd-simple.5.gz /usr/share/man/sv/man5/sssd-sudo.5.gz /usr/share/man/sv/man5/sssd-systemtap.5.gz /usr/share/man/sv/man5/sssd.conf.5.gz /usr/share/man/sv/man8/sss_cache.8.gz /usr/share/man/sv/man8/sssd.8.gz /usr/share/man/uk/man1/sss_ssh_authorizedkeys.1.gz /usr/share/man/uk/man1/sss_ssh_knownhosts.1.gz /usr/share/man/uk/man5/sssd-idp.5.gz /usr/share/man/uk/man5/sssd-session-recording.5.gz /usr/share/man/uk/man5/sssd-simple.5.gz /usr/share/man/uk/man5/sssd-sudo.5.gz /usr/share/man/uk/man5/sssd-systemtap.5.gz /usr/share/man/uk/man5/sssd.conf.5.gz /usr/share/man/uk/man8/sss_cache.8.gz /usr/share/man/uk/man8/sssd.8.gz /usr/share/polkit-1/rules.d/sssd-pcsc.rules /usr/share/polkit-1/rules.d/sssd-realmd.rules /usr/share/sssd /usr/share/sssd/cfg_rules.ini /usr/share/sssd/systemtap /usr/share/sssd/systemtap/dp_request.stp /usr/share/sssd/systemtap/id_perf.stp /usr/share/sssd/systemtap/ldap_perf.stp /usr/share/sssd/systemtap/nested_group_perf.stp /usr/share/systemtap /usr/share/systemtap/tapset /usr/share/systemtap/tapset/sssd.stp /usr/share/systemtap/tapset/sssd_functions.stp /var/cache/krb5rcache /var/lib/sss /var/lib/sss/db /var/lib/sss/deskprofile /var/lib/sss/gpo_cache /var/lib/sss/mc /var/lib/sss/pipes /var/lib/sss/pipes/private /var/lib/sss/pubconf /var/lib/sss/secrets /var/log/sssd
Generated by rpm2html 1.8.1
Fabrice Bellet, Sun Jul 26 07:05:10 2026