CVE-2024-11029
Freeipa: administrative user data leaked through systemd journal
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
A flaw was found in the FreeIPA API audit, where it sends the whole FreeIPA command line to journalctl. As a consequence, during the FreeIPA installation process, it inadvertently leaks the administrative user credentials, including the administrator password, to the journal database. In the worst-case scenario, where the journal log is centralized, users with access to it can have improper access to the FreeIPA administrator credentials.
Se encontró un fallo en la auditoría de la API de FreeIPA, donde envía toda la línea de comandos de FreeIPA a journalctl. Como consecuencia, durante el proceso de instalación de FreeIPA, filtra inadvertidamente las credenciales de usuario administrativo, incluida la contraseña de administrador, a la base de datos del diario. En el peor de los casos, donde el registro del diario está centralizado, los usuarios con acceso a él pueden tener acceso indebido a las credenciales de administrador de FreeIPA.
An update for ipa is now available for Red Hat Enterprise Linux 9.
CVSS Scores
SSVC
- Decision:Track
Timeline
- 2024-11-08 CVE Reserved
- 2025-01-15 CVE Published
- 2025-03-18 CVE Updated
- 2025-03-30 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-497: Exposure of Sensitive System Information to an Unauthorized Control Sphere
CAPEC
References (3)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://access.redhat.com/errata/RHSA-2025:0334 | 2025-01-15 | |
https://access.redhat.com/security/cve/CVE-2024-11029 | 2025-01-15 | |
https://bugzilla.redhat.com/show_bug.cgi?id=2325557 | 2025-01-15 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Oracle Search vendor "Oracle" | Linux Search vendor "Oracle" for product "Linux" | * | - |
Affected
| ||||||
Red Hat Search vendor "Red Hat" | Enterprise Linux Search vendor "Red Hat" for product "Enterprise Linux" | * | - |
Affected
| ||||||
Redhat Search vendor "Redhat" | Enterprise Linux Search vendor "Redhat" for product "Enterprise Linux" | * | - |
Affected
| ||||||
Oracle Search vendor "Oracle" | Linux Search vendor "Oracle" for product "Linux" | * | - |
Affected
| ||||||
Redhat Search vendor "Redhat" | Enterprise Linux Search vendor "Redhat" for product "Enterprise Linux" | * | - |
Affected
|