Back Linuxsecurity Ubuntu SSSD Denial of Service Vulnerability USN-8718-1 CVE-2026
Keep your Linux systems secure and up to date with practical patching guidance. Review Linux Patching Best Practices ×
SSSD could be made to crash if it received specially crafted input. Software Description: - sssd: System Security Services Daemon Details: It was discovered that SSSD did not properly validate authentication token lengths when processing PAM responder requests. A local attacker could possibly use this issue to cause SSSD to crash, resulting in a denial of service.
SSSD could be made to crash if it received specially crafted input.
Software Description:
- sssd: System Security Services Daemon
It was discovered that SSSD did not properly validate authentication token
lengths when processing PAM responder requests. A local attacker could
possibly use this issue to cause SSSD to crash, resulting in a denial of
The problem can be corrected by updating your system to the following package versions: Ubuntu 26.04 LTS sssd-common 2.12.0-1ubuntu5.4 Ubuntu 24.04 LTS sssd-common 2.9.4-1.1ubuntu6.8 Ubuntu 22.04 LTS sssd-common 2.6.3-1ubuntu3.9 Ubuntu 20.04 LTS sssd-common 2.2.3-3ubuntu0.13+esm1 Available with Ubuntu Pro Ubuntu 18.04 LTS sssd-common 1.16.1-1ubuntu1.8+esm1 Available with Ubuntu Pro Ubuntu 16.04 LTS sssd-common 1.13.4-1ubuntu1.15+esm1 Available with Ubuntu Pro After a standard system update you need to restart sssd to make all the necessary changes.
Ubuntu Security Notice USN-8718-1
Get the latest News and Insights
Get the latest Linux and open source security news straight to your inbox.
Linux Security - Your source for Top Linux News, Advisories, HOWTOs and Feature Releases
The full story
This article is one source in a clustered incident — the cluster page carries the summary, timeline and every other outlet covering it.
