CVE-2026-104040Medium· 4.4▾ SunlitA flaw was found in SSSD. When configured with the Entra ID identity provider, input lookup names containing single quotes are not properly escaped before being included in Microsoft Graph Open Data Protocol (OData) queries. A low-privil…
▾ Sunlit zone — Low / medium · no exploitation signal
impact 24.2 · likelihood 0 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
A flaw was found in SSSD. When configured with the Entra ID identity provider, input lookup names containing single quotes are not properly escaped before being included in Microsoft Graph Open Data Protocol (OData) queries. A low-privileged local user can exploit this flaw by submitting a crafted search request, altering query filters to broaden user or group searches. This can lead to information disclosure by retrieving unintended directory objects, as well as a Denial of Service (DoS) through excessive processing and cache population.
sssd (all versions)sssdsssd (all versions)sssd (all versions)sssd (all versions)openshift/ose-rhel-coreos-8 (all versions)openshift/ose-rhel-coreos-9 (all versions)Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base, or stability.
Connected by shared product, vendor, weakness, or advisory.
CVE-2026-104039Medium· 4.7Sssd: sssd: denial of service via stale connection state reuse in pam gssapi responder
CVE-2026-104041Medium· 5.5Sssd: sssd: denial of service via unbounded negative cache growth
CVE-2026-104042Medium· 5.5Sssd: sssd: denial of service via out-of-bounds read in pam responder
CVE-2026-104043Medium· 5.5Sssd: sssd: denial of service via undersized packet parsing in nss responder
CVE-2026-104044Medium· 6.2Sssd: sssd: denial of service via crafted passkey kerberos authentication request
CVE-2026-104031Medium· 5.5A flaw was found in SSSD