PT-2023-3666 · Openssh+13 · Openssh+13

Baba Yaga

·

Publicado

2023-07-19

·

Atualizado

2026-05-13

·

CVE-2023-38408

CVSS v2.0

10

Crítica

VetorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions OpenSSH versions 7.9p1-alt4.gost.p10.1, 7.9p1-alt4.p10.6, 9.6p1-alt1.gost, 9.6p1-alt2.gost
Description OpenSSH contains a vulnerability where the ssh-agent component incorrectly handles loading certain PKCS#11 providers. This can allow a remote attacker to execute arbitrary code if a user has forwarded their ssh-agent to an untrusted system and that system contains malicious libraries. The vulnerability exists due to improper handling of library loading, potentially leading to the execution of untrusted code.
Recommendations Update OpenSSH to version 7.9p1-alt4.gost.p10.1, 7.9p1-alt4.p10.6, 9.6p1-alt1.gost, or 9.6p1-alt2.gost.

Exploit

Correção

LPE

RCE

Untrusted Search Path

Code Injection

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

ALSA-2023:4412
ALSA-2023:4419
ALSA-2023_4412
ALSA-2023_4419
ALSA-2024_1130
ALSA-2024_1150
ALSA-2025_16880
ALT-PU-2023-4471
ALT-PU-2023-4472
ALT-PU-2023-4480
ALT-PU-2023-4654
ALT-PU-2024-12010
ALT-PU-2024-12012
ALT-PU-2024-17672
ALT-PU-2024-3921
ALT-PU-2024-4077
ALT-PU-2024-4467
ALT-PU-2024-7269
ALT-PU-2024-9513
AZL-27651
BDU:2023-03950
CESA-2023_4382
CESA-2023_4419
CVE-2023-38408
DLA-3532-1
ELSA-2023-4382
ELSA-2023-4412
ELSA-2023-4419
ELSA-2023-4428
FREEBSD-SA-23_08
JLSEC-2026-68
MGASA-2024-0010
OESA-2023-1480
OPENSUSE-SU-2023_2945-1
OPENSUSE-SU-2024:13063-1
RHSA-2023:4329
RHSA-2023:4381
RHSA-2023:4382
RHSA-2023:4383
RHSA-2023:4384
RHSA-2023:4412
RHSA-2023:4413
RHSA-2023:4419
RHSA-2023:4428
RHSA-2023_4382
RHSA-2023_4412
RHSA-2023_4419
RLSA-2023:4419
RLSA-2023_4419
ROSA-SA-2023-2229
SUSE-SU-2023:2940-1
SUSE-SU-2023:2945-1
SUSE-SU-2023:2946-1
SUSE-SU-2023:2947-1
SUSE-SU-2023:2950-1
SUSE-SU-2023_2940-1
SUSE-SU-2023_2945-1
SUSE-SU-2023_2946-1
SUSE-SU-2023_2947-1
SUSE-SU-2023_2950-1
USN-6242-1
USN-6242-2

Produtos afetados

Alt Linux
Almalinux
Astra Linux
Centos
Freebsd
Ibm Aix
Linuxmint
Apple Macos
Openssh
Red Hat
Red Os
Rocky Linux
Suse
Ubuntu