CVE-2013-0219: Fedoraproject Sssd

Low severity, CVSS 3.7. EPSS: 0.4% chance of exploitation in the next 30 days.

System Security Services Daemon (SSSD) before 1.9.4, when (1) creating, (2) copying, or (3) removing a user home directory tree, allows local users to create, modify, or delete arbitrary files via a symlink attack on another user's files.

Affected products

  • Fedoraproject Sssd: up to and including 1.9.3; version 0.2.1 only; version 0.3.0 only; version 0.3.1 only; version 0.3.2 only; version 0.3.3 only; …
  • Red Hat Enterprise Linux: version 5 only; version 6.0 only

Published 2013-02-24. Last modified 2026-06-16.