| Index | index by Group | index by Distribution | index by Vendor | index by creation date | index by Name | Mirrors | Help | Search |
| Name: sssd-common | Distribution: AlmaLinux |
| Version: 2.13.1 | Vendor: AlmaLinux |
| Release: 3.el10 | Build date: Wed Sep 16 13:47:43 2026 |
| Group: Unspecified | Build host: x64-builder04.almalinux.org |
| Size: 5768418 | Source RPM: sssd-2.13.1-3.el10.src.rpm |
| Packager: AlmaLinux Packaging Team <packager@almalinux.org> | |
| Url: https://github.com/SSSD/sssd/ | |
| Summary: Common files for the SSSD | |
Common files for the SSSD. The common package includes all the files needed to run a particular back end, however, the back ends are packaged in separate subpackages such as sssd-ldap.
GPL-3.0-or-later
* Tue Sep 08 2026 Madhuri Upadhye <mupadhye@redhat.com> - 2.13.1-3
- Resolves: RHEL-248164 Spurious warnings about `ldap_sudo_search_base`
- Resolves: RHEL-188425 pam: Forward environment variables from PAM client to p11_child
- Resolves: RHEL-257113 CVE-2026-87853 sssd: IdP authentication prefix comparison allows cross-user impersonation
* Thu Jul 02 2026 Madhuri Upadhye <mupadhye@redhat.com> - 2.13.1-2
- Resolves: RHEL-190529 CVE-2026-12610 sssd: Use-after-free crash in SSSD' 'sssd_pam' process
- Resolves: RHEL-185008 Regression in IPA + Idp authentication with keycloak
- Resolves: RHEL-111571 'sssctl config-check' does not work correctly for "Accessing AD with a MSA"
- Resolves: RHEL-192054 CVE-2026-14474 sssd: sudo ldap provider searches entire directory tree for sudorole objects by default, enabling privilege escalation
- Resolves: RHEL-192069 CVE-2026-14476 sssd: path traversal in SSSD AD GPO provider allows writing files outside GPO cache directory as root
* Wed Jun 10 2026 Sumit Bose <sbose@redhat.com> - 2.13.1-1
- Resolves: RHEL-183331 Rebase SSSD for RHEL 10.3
- Resolves: RHEL-178180 'sssctl analyze --help' shows incorrect command in usage field
- Resolves: RHEL-173663 [Regression] Cannot log in to FreeIPA account with password immediately after boot
- Resolves: RHEL-173660 SSSD 2.13 doesn't work in offline mode, generates plenty of Permission denied errors
- Resolves: RHEL-172303 SSSD: LDAP backend ('sssd_be') initialization fails if DNS in unresponsive
- Resolves: RHEL-151491 SSSD kerberos plugins export symbols which clash
- Resolves: RHEL-133013 /etc/hosts containing an entry with a name and alias but no IPv4 address results in sssd_be crash
- Resolves: RHEL-5054 Smart card reader with pinpad fails C_Login. (CKF_PROTECTED_AUTHENTICATION_PATH not handled correctly)
* Tue Apr 28 2026 Sumit Bose <sbose@redhat.com> - 2.13.0-1
- Resolves: RHEL-167873 - CVE-2026-6245 sssd: out-of-bounds read in the sssd [rhel-10.3]
- Resolves: RHEL-154156 - SSSD needs to add Plasma Login Manager to the PAM services whitelist for the AD provider
- Resolves: RHEL-142964 - Poor performance of `BE_REQ_INITGROUPS` handling by 'sssd_be' (LDAP RFC2307, no nested groups)
- Resolves: RHEL-138905 - [RFE] SSSD PAM: Support Microsoft AD PKINIT authentication indicator (ms-pkca) for pam_gssapi_indicators_map
- Resolves: RHEL-123943 - Man page update: man sssd_krb5_localauth_plugin – Missing disable = an2ln
- Resolves: RHEL-109754 - Performance impact with enumerate in SSSD > 2.7.3
- Resolves: RHEL-108116 - Concurrent child processes trigger unnecessarily backtrace
- Resolves: RHEL-5049 - Detect foreign security principals in AD group members and silently ignore them
* Tue Apr 14 2026 Tomas Halman <thalman@redhat.com> - 2.12.0-3
- Resolves: RHEL-167749 - SSSD IdP (Entra ID): listing group members does not work
- Resolves: RHEL-167757 - sssd-kcm fails to start if krb5_renew_interval is specified
* Thu Apr 02 2026 Tomas Halman <thalman@redhat.com> - 2.12.0-2
- Resolves: RHEL-148232 - Failed to resolve indirect group-members of nested non-POSIX group
* Thu Jan 15 2026 Sumit Bose <sbose@redhat.com> - 2.12.0-1
- Resolves: RHEL-139110 - Rebase SSSD for RHEL 10.2
- Resolves: RHEL-132552 - sssd_be: segfault at 8 ip 00007f6fd25b2b90 sp 00007ffc02dfbae0 error 4 in libsss_ipa.so[7f6fd25ae000+4d000]
- Resolves: RHEL-132505 - RFE: package LDAP provider support for subid ranges
- Resolves: RHEL-130571 - SSSD: change a default value of 'session_provider' sssd.conf option to 'none'
- Resolves: RHEL-129636 - sssd service fails to start after updating to 2.9.6-4 or 2.9.7-4
- Resolves: RHEL-128594 - 'sssd_nss' hangs when looking up an object by ID that has expired cache entry and filtered out by name
- Resolves: RHEL-127792 - Remove SSSD option ipa_enable_dns_sites
- Resolves: RHEL-120501 - Crash in 'sss_client/autofs/sss_autofs.c'
- Resolves: RHEL-120287 - CVE-2025-11561 sssd: SSSD default Kerberos configuration allows privilege escalation on AD-joined Linux systems [rhel-10.2]
- Resolves: RHEL-114468 - Spam in 'sssd_kcm.log' during normal operations
- Resolves: RHEL-113111 - Including innapropriate IPv6 addresses in dyndns_update
- Resolves: RHEL-104221 - The SSSD cache is filled with groups having GID=0, causing the cache index to grow excessively large. This, in turn, leads to timeouts
- Resolves: RHEL-94545 - When the user name of an AD user in an IPA-AD trust environment overwritten, the user private group, the users primary group, cannot be lookup up by the overwritten name.
- Resolves: RHEL-77184 - AD user in external group is not cleared when expiring the cache
- Resolves: RHEL-72935 - sss_override does not work on AD UPN
- Resolves: RHEL-11913 - GDM Support for IdM IdP feature and MFA [SSSD]
- Resolves: RHEL-4990 - [RFE] SSSD support for Azure AD / Microsoft Entra ID (or general direct support of OIDC authentication)
* Mon Sep 22 2025 Pavel Filipenský <pfilipen@redhat.com> - 2.11.1-3
- Related: RHEL-114545 - Rebase Samba to the latest 4.23.x release
* Thu Aug 14 2025 Alexey Tikhonov <atikhono@redhat.com> - 2.11.1-2
- Related: RHEL-77184 - AD user in external group is not cleared when expiring the cache
Patch used to fix this ticket causes a regression (RHEL-106987) and is being reverted.
* Thu Jul 31 2025 Alexey Tikhonov <atikhono@redhat.com> - 2.11.1-1
- Resolves: RHEL-95058 - Rebase SSSD for RHEL 10.1
- Resolves: RHEL-77184 - AD user in external group is not cleared when expiring the cache
* Fri Jun 13 2025 Alexey Tikhonov <atikhono@redhat.com> - 2.11.0-3
- Related: RHEL-89870 - Rebase Samba to the latest 4.22.x release
* Fri Jun 06 2025 Alexey Tikhonov <atikhono@redhat.com> - 2.11.0-2
- Resolves: RHEL-95058 - Rebase SSSD for RHEL 10.1
* Thu Jun 05 2025 Alexey Tikhonov <atikhono@redhat.com> - 2.11.0-1
- Resolves: RHEL-95058 - Rebase SSSD for RHEL 10.1
- Resolves: RHEL-4976 - [RFE] Continue searching other PKCS#11 tokens if certificates are not found
- Resolves: RHEL-87200 - SSSD fails to connect with ipv4_first when on a machine with only IPv6 and server is dual-stack
- Resolves: RHEL-25593 - Improve sssd-simple man page description
- Resolves: RHEL-14752 - [RFE] Add IPA subdomain support to allow IPA-IPA trust
- Resolves: RHEL-92569 - SSSD LDAPU1 Mapping braces problem
- Resolves: RHEL-4981 - p11_child currently has an infinite timeout
- Resolves: RHEL-5042 - IDM homedir %o is not working, returns /home/domain/user instead of AD POSIX unixHomeDir
- Resolves: RHEL-13086 - [RFE] Anonymous bind requests on RootDSE
- Resolves: RHEL-45824 - SSSD unable to enumerate LDAP groups if LDAP server contains any group with # character in their names
* Fri May 02 2025 Andrea Bolognani <abologna@redhat.com> - 2.10.2-4
- Resolves: RHEL-89474 - Fails to build on riscv64
* Mon Apr 07 2025 Alexey Tikhonov <atikhono@redhat.com> - 2.10.2-3.2
- Resolves: RHEL-79158 - Disk cache failure with large db sizes
* Wed Apr 02 2025 Alexey Tikhonov <atikhono@redhat.com> - 2.10.2-3.1
- Resolves: RHEL-79158 - Disk cache failure with large db sizes
* Wed Feb 12 2025 Alexey Tikhonov <atikhono@redhat.com> - 2.10.2-3
- Resolves: RHEL-78061 - 'sssd_kcm' leaks memory
* Mon Feb 10 2025 Alexey Tikhonov <atikhono@redhat.com> - 2.10.2-2
- Resolves: RHEL-78061 - 'sssd_kcm' leaks memory
* Wed Jan 29 2025 Alexey Tikhonov <atikhono@redhat.com> - 2.10.2-1
- Resolves: RHEL-62725 - Rebase SSSD for RHEL 10.0
* Wed Dec 18 2024 Alexey Tikhonov <atikhono@redhat.com> - 2.10.1-3
- Resolves: RHEL-62725 - Rebase SSSD for RHEL 10.0
* Wed Dec 18 2024 Alexey Tikhonov <atikhono@redhat.com> - 2.10.1-2
- Resolves: RHEL-62725 - Rebase SSSD for RHEL 10.0
* Tue Dec 10 2024 Alexey Tikhonov <atikhono@redhat.com> - 2.10.1-1
- Resolves: RHEL-62725 - Rebase SSSD for RHEL 10.0
- Resolves: RHEL-4984 - Mismatch between input and parsed domain name when default_domain_suffix is set.
- Resolves: RHEL-65848 - sssd password authentication broken in sssd-2.10.0~beta2-2 and later
- Resolves: RHEL-67669 - Label DP_OPT_DYNDNS_REFRESH_OFFSET has no corresponding option
- Resolves: RHEL-68421 - sssd ldap_child process segfaults when krb5.conf is invalid [rhel-10]
- Resolves: RHEL-66935 - Avoid log flooding in case an app keeps making invalid `getservbyport(0, ...)` request
- Resolves: RHEL-65736 - ipa: sudo commands doesn't check threshold correctly
- Resolves: RHEL-68319 - Please deprecate/remove ad_allow_remote_domain_local_groups
* Mon Oct 21 2024 Alexey Tikhonov <atikhono@redhat.com> - 2.10.0-3
- Related: RHEL-59777 - Rebase Samba to the latest 4.21.x release
* Tue Oct 15 2024 Alexey Tikhonov <atikhono@redhat.com> - 2.10.0-2
- Resolves: RHEL-62725 - Rebase SSSD for RHEL 10.0
* Tue Oct 15 2024 Alexey Tikhonov <atikhono@redhat.com> - 2.10.0-1
- Resolves: RHEL-62725 - Rebase SSSD for RHEL 10.0
- Resolves: RHEL-56701 - sss_ssh_knownhosts is breaking ansible-pull
- Resolves: RHEL-55993 - SSSD needs an option to indicate if the LDAP server can run the exop with an anonymous bind or not
/etc/logrotate.d /etc/logrotate.d/sssd /etc/pam.d/sssd-shadowutils /etc/rwtab.d /etc/rwtab.d/sssd /etc/sssd /etc/sssd/conf.d /etc/sssd/pki /etc/sssd/sssd.conf /run/sssd /usr/bin/sss_ssh_authorizedkeys /usr/bin/sss_ssh_knownhosts /usr/bin/sss_ssh_knownhostsproxy /usr/lib/.build-id /usr/lib/.build-id/02 /usr/lib/.build-id/02/03b32b98833f650bb7779395ae4f6df8fde95c /usr/lib/.build-id/02/d6ff464be157a66d26edf79d7ddce565ea0be4 /usr/lib/.build-id/06 /usr/lib/.build-id/06/42c12dd261c33d5bc24e0d3f98c9f09fcb17bf /usr/lib/.build-id/07 /usr/lib/.build-id/07/4dfe46e046799c53b67f3f8267b3d54c22c7b7 /usr/lib/.build-id/10 /usr/lib/.build-id/10/226d116f67f8302d748790769648f93bdcbc05 /usr/lib/.build-id/11 /usr/lib/.build-id/11/591ae745f49376e66da92cfe32d9167ae720f4 /usr/lib/.build-id/13 /usr/lib/.build-id/13/07370f45bebc926a5eb709c546af97c6f908f3 /usr/lib/.build-id/16 /usr/lib/.build-id/16/c0e2cef5cf504e8dbc0c655cfa5618201c2940 /usr/lib/.build-id/33 /usr/lib/.build-id/33/02e3d585b6cd61b265bc30ef3bfa69e4b711fb /usr/lib/.build-id/5f /usr/lib/.build-id/5f/9b0781446701852c59b211ac2b47ca82bc09e2 /usr/lib/.build-id/73 /usr/lib/.build-id/73/56e9ac81a157719e2c41693f145c26f152f598 /usr/lib/.build-id/7a /usr/lib/.build-id/7a/79a6564b728c41ee463e757c9ca7d40472d33f /usr/lib/.build-id/7c /usr/lib/.build-id/7c/cd1e08eff5614d2d664ea2f848672b2f33366d /usr/lib/.build-id/8a /usr/lib/.build-id/8a/57cd9eb8360ae80840afba0bbfe96aec671f45 /usr/lib/.build-id/8c /usr/lib/.build-id/8c/b450dccdb2ec143691ba76f1ccd7ac0082335f /usr/lib/.build-id/91 /usr/lib/.build-id/91/779c545f8cc706cc37ebb9df02cff4494fc8e4 /usr/lib/.build-id/9e /usr/lib/.build-id/9e/3aafe0098dce7bef4373796e84ac90020dd1c7 /usr/lib/.build-id/ae /usr/lib/.build-id/ae/d208251677cbc3035fda1d5526435c6ef40fd4 /usr/lib/.build-id/be /usr/lib/.build-id/be/ea7c71a9cbe432a6c5285d825f151b0343f583 /usr/lib/.build-id/c5 /usr/lib/.build-id/c5/92f3769f9211bf579a13ef2b24aef6a5132c27 /usr/lib/.build-id/ca /usr/lib/.build-id/ca/9c00cd2f50edf903ef565574b7936d8f6df845 /usr/lib/.build-id/cf /usr/lib/.build-id/cf/bd43715d6fd47417df3ede8f7c9203740c6c25 /usr/lib/.build-id/d1 /usr/lib/.build-id/d1/814f40dfa20ece635ab09509f0e50d55eb42b3 /usr/lib/.build-id/d6 /usr/lib/.build-id/d6/4713835a261daae6a5a3e88db01e7ac1461355 /usr/lib/.build-id/d7 /usr/lib/.build-id/d7/59cbfd8e05e781471da009f1d6d3c07d457d5b /usr/lib/.build-id/df /usr/lib/.build-id/df/377cb2ac74826fce681fb6f852f45befb7b15a /usr/lib/.build-id/e0 /usr/lib/.build-id/e0/482ea8d10bacff6775fa1162902a15037720ca /usr/lib/.build-id/f2 /usr/lib/.build-id/f2/72263f3ab33cef4a414d514b96226d5f67cc0e /usr/lib/.build-id/fc /usr/lib/.build-id/fc/fff9673a651e763d23d5357f50c7739cc39e52 /usr/lib/systemd/system/sssd-autofs.service /usr/lib/systemd/system/sssd-autofs.socket /usr/lib/systemd/system/sssd-nss.service /usr/lib/systemd/system/sssd-nss.socket /usr/lib/systemd/system/sssd-pac.service /usr/lib/systemd/system/sssd-pac.socket /usr/lib/systemd/system/sssd-pam.service /usr/lib/systemd/system/sssd-pam.socket /usr/lib/systemd/system/sssd-ssh.service /usr/lib/systemd/system/sssd-ssh.socket /usr/lib/systemd/system/sssd-sudo.service /usr/lib/systemd/system/sssd-sudo.socket /usr/lib/systemd/system/sssd.service /usr/lib/sysusers.d/sssd.conf /usr/lib/tmpfiles.d/sssd.conf /usr/lib64/samba/ldb/memberof.so /usr/lib64/sssd /usr/lib64/sssd/conf /usr/lib64/sssd/conf/sssd.conf /usr/lib64/sssd/libifp_iface.so /usr/lib64/sssd/libifp_iface_sync.so /usr/lib64/sssd/libsss_cert.so /usr/lib64/sssd/libsss_child.so /usr/lib64/sssd/libsss_crypt.so /usr/lib64/sssd/libsss_debug.so /usr/lib64/sssd/libsss_iface.so /usr/lib64/sssd/libsss_iface_sync.so /usr/lib64/sssd/libsss_krb5_common.so /usr/lib64/sssd/libsss_ldap_common.so /usr/lib64/sssd/libsss_sbus.so /usr/lib64/sssd/libsss_sbus_sync.so /usr/lib64/sssd/libsss_simple.so /usr/lib64/sssd/libsss_util.so /usr/libexec/sssd /usr/libexec/sssd/p11_child /usr/libexec/sssd/sss_signal /usr/libexec/sssd/sssd_autofs /usr/libexec/sssd/sssd_be /usr/libexec/sssd/sssd_check_socket_activated_responders /usr/libexec/sssd/sssd_nss /usr/libexec/sssd/sssd_pam /usr/libexec/sssd/sssd_ssh /usr/libexec/sssd/sssd_sudo /usr/sbin/sss_cache /usr/sbin/sssd /usr/share/doc/sssd-common /usr/share/doc/sssd-common/sssd-example.conf /usr/share/licenses/sssd-common /usr/share/licenses/sssd-common/COPYING /usr/share/locale/bg/LC_MESSAGES/sssd.mo /usr/share/locale/br/LC_MESSAGES/sssd.mo /usr/share/locale/ca/LC_MESSAGES/sssd.mo /usr/share/locale/cs/LC_MESSAGES/sssd.mo /usr/share/locale/de/LC_MESSAGES/sssd.mo /usr/share/locale/es/LC_MESSAGES/sssd.mo /usr/share/locale/eu/LC_MESSAGES/sssd.mo /usr/share/locale/fi/LC_MESSAGES/sssd.mo /usr/share/locale/fr/LC_MESSAGES/sssd.mo /usr/share/locale/hu/LC_MESSAGES/sssd.mo /usr/share/locale/id/LC_MESSAGES/sssd.mo /usr/share/locale/it/LC_MESSAGES/sssd.mo /usr/share/locale/ja/LC_MESSAGES/sssd.mo /usr/share/locale/ka/LC_MESSAGES/sssd.mo /usr/share/locale/ko/LC_MESSAGES/sssd.mo /usr/share/locale/lv/LC_MESSAGES/sssd.mo /usr/share/locale/nb/LC_MESSAGES/sssd.mo /usr/share/locale/nl/LC_MESSAGES/sssd.mo /usr/share/locale/pl/LC_MESSAGES/sssd.mo /usr/share/locale/pt/LC_MESSAGES/sssd.mo /usr/share/locale/pt_BR/LC_MESSAGES/sssd.mo /usr/share/locale/ru/LC_MESSAGES/sssd.mo /usr/share/locale/sv/LC_MESSAGES/sssd.mo /usr/share/locale/tg/LC_MESSAGES/sssd.mo /usr/share/locale/tr/LC_MESSAGES/sssd.mo /usr/share/locale/uk/LC_MESSAGES/sssd.mo /usr/share/locale/zh_CN/LC_MESSAGES/sssd.mo /usr/share/locale/zh_TW/LC_MESSAGES/sssd.mo /usr/share/man/man1/sss_ssh_authorizedkeys.1.gz /usr/share/man/man1/sss_ssh_knownhosts.1.gz /usr/share/man/man5/sssd-session-recording.5.gz /usr/share/man/man5/sssd-simple.5.gz /usr/share/man/man5/sssd-sudo.5.gz /usr/share/man/man5/sssd-systemtap.5.gz /usr/share/man/man5/sssd.conf.5.gz /usr/share/man/man8/sss_cache.8.gz /usr/share/man/man8/sssd.8.gz /usr/share/man/pt/man1/sss_ssh_authorizedkeys.1.gz /usr/share/man/pt/man1/sss_ssh_knownhosts.1.gz /usr/share/man/pt/man5/sssd-idp.5.gz /usr/share/man/pt/man5/sssd-session-recording.5.gz /usr/share/man/pt/man5/sssd-simple.5.gz /usr/share/man/pt/man5/sssd-sudo.5.gz /usr/share/man/pt/man5/sssd-systemtap.5.gz /usr/share/man/pt/man5/sssd.conf.5.gz /usr/share/man/pt/man8/sss_cache.8.gz /usr/share/man/pt/man8/sssd.8.gz /usr/share/man/ru/man1/sss_ssh_authorizedkeys.1.gz /usr/share/man/ru/man1/sss_ssh_knownhosts.1.gz /usr/share/man/ru/man5/sssd-idp.5.gz /usr/share/man/ru/man5/sssd-session-recording.5.gz /usr/share/man/ru/man5/sssd-simple.5.gz /usr/share/man/ru/man5/sssd-sudo.5.gz /usr/share/man/ru/man5/sssd-systemtap.5.gz /usr/share/man/ru/man5/sssd.conf.5.gz /usr/share/man/ru/man8/sss_cache.8.gz /usr/share/man/ru/man8/sssd.8.gz /usr/share/man/sv/man1/sss_ssh_authorizedkeys.1.gz /usr/share/man/sv/man1/sss_ssh_knownhosts.1.gz /usr/share/man/sv/man5/sssd-idp.5.gz /usr/share/man/sv/man5/sssd-session-recording.5.gz /usr/share/man/sv/man5/sssd-simple.5.gz /usr/share/man/sv/man5/sssd-sudo.5.gz /usr/share/man/sv/man5/sssd-systemtap.5.gz /usr/share/man/sv/man5/sssd.conf.5.gz /usr/share/man/sv/man8/sss_cache.8.gz /usr/share/man/sv/man8/sssd.8.gz /usr/share/man/uk/man1/sss_ssh_authorizedkeys.1.gz /usr/share/man/uk/man1/sss_ssh_knownhosts.1.gz /usr/share/man/uk/man5/sssd-idp.5.gz /usr/share/man/uk/man5/sssd-session-recording.5.gz /usr/share/man/uk/man5/sssd-simple.5.gz /usr/share/man/uk/man5/sssd-sudo.5.gz /usr/share/man/uk/man5/sssd-systemtap.5.gz /usr/share/man/uk/man5/sssd.conf.5.gz /usr/share/man/uk/man8/sss_cache.8.gz /usr/share/man/uk/man8/sssd.8.gz /usr/share/polkit-1/rules.d/sssd-pcsc.rules /usr/share/polkit-1/rules.d/sssd-realmd.rules /usr/share/sssd /usr/share/sssd/cfg_rules.ini /usr/share/sssd/systemtap /usr/share/sssd/systemtap/dp_request.stp /usr/share/sssd/systemtap/id_perf.stp /usr/share/sssd/systemtap/ldap_perf.stp /usr/share/sssd/systemtap/nested_group_perf.stp /usr/share/systemtap /usr/share/systemtap/tapset /usr/share/systemtap/tapset/sssd.stp /usr/share/systemtap/tapset/sssd_functions.stp /var/cache/krb5rcache /var/lib/sss /var/lib/sss/db /var/lib/sss/deskprofile /var/lib/sss/gpo_cache /var/lib/sss/mc /var/lib/sss/pipes /var/lib/sss/pipes/private /var/lib/sss/pubconf /var/lib/sss/secrets /var/log/sssd
Generated by rpm2html 1.8.1
Fabrice Bellet, Fri Oct 2 10:45:21 2026