Files
CVEs-PoC/2015/CVE-2015-5292.md
T
2024-06-09 00:33:16 +00:00

954 B

CVE-2015-5292

Description

Memory leak in the Privilege Attribute Certificate (PAC) responder plugin (sssd_pac_plugin.so) in System Security Services Daemon (SSSD) 1.10 before 1.13.1 allows remote authenticated users to cause a denial of service (memory consumption) via a large number of logins that trigger parsing of PAC blobs during Kerberos authentication.

POC

Reference

Github