Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2023-5616

Опубликовано: 15 апр. 2025
Источник: debian

Описание

In Ubuntu, gnome-control-center did not properly reflect SSH remote login status when the system was configured to use systemd socket activation for openssh-server. This could unknowingly leave the local machine exposed to remote SSH access contrary to expectation of the user.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
gnome-control-centerunfixedpackage
gnome-control-centerpostponedtrixiepackage
gnome-control-centerpostponedbookwormpackage
gnome-control-centerno-dsabullseyepackage
gnome-control-centerno-dsabusterpackage

Примечания

  • https://bugs.launchpad.net/ubuntu/+source/gnome-control-center/+bug/2039577

  • https://gitlab.gnome.org/GNOME/gnome-control-center/-/merge_requests/2462

  • https://gitlab.gnome.org/GNOME/gnome-control-center/-/merge_requests/2092 (abandoned)

  • TODO: check, potentially same incorrect checking of service and socket status in budgie-control-center

Связанные уязвимости

CVSS3: 4.9
ubuntu
10 месяцев назад

In Ubuntu, gnome-control-center did not properly reflect SSH remote login status when the system was configured to use systemd socket activation for openssh-server. This could unknowingly leave the local machine exposed to remote SSH access contrary to expectation of the user.

CVSS3: 4.9
redhat
10 месяцев назад

In Ubuntu, gnome-control-center did not properly reflect SSH remote login status when the system was configured to use systemd socket activation for openssh-server. This could unknowingly leave the local machine exposed to remote SSH access contrary to expectation of the user.

CVSS3: 4.9
nvd
10 месяцев назад

In Ubuntu, gnome-control-center did not properly reflect SSH remote login status when the system was configured to use systemd socket activation for openssh-server. This could unknowingly leave the local machine exposed to remote SSH access contrary to expectation of the user.

CVSS3: 4.9
github
10 месяцев назад

In Ubuntu, gnome-control-center did not properly reflect SSH remote login status when the system was configured to use systemd socket activation for openssh-server. This could unknowingly leave the local machine exposed to remote SSH access contrary to expectation of the user.