Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-38408


The PKCS#11 feature in ssh-agent in OpenSSH before 9.3p2 has an insufficiently trustworthy search path, leading to remote code execution if an agent is forwarded to an attacker-controlled system. (Code in /usr/lib is not necessarily safe for loading into ssh-agent.) NOTE: this issue exists because of an incomplete fix for CVE-2016-10009.


Published

2023-07-20T03:15:10.170

Last Modified

2024-11-21T08:13:30.520

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 9.8 (CRITICAL)

Weaknesses
  • Type: Primary
    CWE-428
  • Type: Secondary
    CWE-428

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application openbsd openssh < 9.3 Yes
Application openbsd openssh 9.3 Yes
Application openbsd openssh 9.3 Yes
Operating System fedoraproject fedora 37 Yes
Operating System fedoraproject fedora 38 Yes

References