development/libraries

libipa_hbac - FreeIPA HBAC Evaluator library

Website: https://github.com/SSSD/sssd
License: LGPLv3+
Vendor: Rocky
Description:
Utility library to validate FreeIPA HBAC rules for authorization requests

Packages

libipa_hbac-2.9.4-5.el8_10.5.x86_64 [129 KiB] Changelog by Alexey Tikhonov (2026-07-08):
- Resolves: RHEL-168415 - [Addition] Crash in 'sss_client/autofs/sss_autofs.c' [rhel-8.10.z]
- Resolves: RHEL-168363 - sss_override does not work on AD UPN [rhel-8.10.z]
- Resolves: RHEL-192053 - CVE-2026-14474: sudo LDAP provider searches entire directory tree for sudoRole objects by default, enabling privilege escalation [rhel-8.10.z]
- Resolves: RHEL-192076 - CVE-2026-14476: GPO cache path traversal via unsanitized gPCFileSysPath allows Kerberos authentication bypass [rhel-8.10.z]
libipa_hbac-2.9.4-5.el8_10.4.x86_64 [128 KiB] Changelog by Alexey Tikhonov (2026-01-26):
- Resolves: RHEL-143731 - Crash in 'sss_client/autofs/sss_autofs.c' [rhel-8.10.z]
- Resolves: RHEL-133476 - 'sssd_nss' hangs when looking up an object by ID that has expired cache entry and filtered out by name [rhel-8.10.z]
- Resolves: RHEL-114350 - Frequent crashes of the SSSD process (sssd_pac), leading to the termination of the AD trusted domain subprocess by the watchdog [rhel-8.10.z]
- Resolves: RHEL-143719 - SSSD unable to enumerate LDAP groups with 'getent group' & 'getent group -s sss ' if LDAP server contains any group with # character in their names [rhel-8.10.z]

Listing created by Repoview-0.6.6-16.el8.sme