Количество 18
Количество 18

CVE-2023-38408
The PKCS#11 feature in ssh-agent in OpenSSH before 9.3p2 has an insufficiently trustworthy search path, leading to remote code execution if an agent is forwarded to an attacker-controlled system. (Code in /usr/lib is not necessarily safe for loading into ssh-agent.) NOTE: this issue exists because of an incomplete fix for CVE-2016-10009.

CVE-2023-38408
The PKCS#11 feature in ssh-agent in OpenSSH before 9.3p2 has an insufficiently trustworthy search path, leading to remote code execution if an agent is forwarded to an attacker-controlled system. (Code in /usr/lib is not necessarily safe for loading into ssh-agent.) NOTE: this issue exists because of an incomplete fix for CVE-2016-10009.

CVE-2023-38408
The PKCS#11 feature in ssh-agent in OpenSSH before 9.3p2 has an insufficiently trustworthy search path, leading to remote code execution if an agent is forwarded to an attacker-controlled system. (Code in /usr/lib is not necessarily safe for loading into ssh-agent.) NOTE: this issue exists because of an incomplete fix for CVE-2016-10009.
CVE-2023-38408
The PKCS#11 feature in ssh-agent in OpenSSH before 9.3p2 has an insuff ...

SUSE-SU-2023:2950-1
Security update for openssh

SUSE-SU-2023:2947-1
Security update for openssh

SUSE-SU-2023:2946-1
Security update for openssh

SUSE-SU-2023:2945-1
Security update for openssh

SUSE-SU-2023:2940-1
Security update for openssh

RLSA-2023:4419
Important: openssh security update
GHSA-px36-p9hv-7h2v
The PKCS#11 feature in ssh-agent in OpenSSH before 9.3p2 has an insufficiently trustworthy search path, leading to remote code execution if an agent is forwarded to an attacker-controlled system. (Code in /usr/lib is not necessarily safe for loading into ssh-agent.) NOTE: this issue exists because of an incomplete fix for CVE-2016-10009.
ELSA-2023-4419
ELSA-2023-4419: openssh security update (IMPORTANT)
ELSA-2023-4412
ELSA-2023-4412: openssh security update (IMPORTANT)
ELSA-2023-4382
ELSA-2023-4382: openssh security update (IMPORTANT)
ELSA-2023-12711
ELSA-2023-12711: openssh security update (CRITICAL)

BDU:2023-03950
Уязвимость функции PKCS#11 компонента ssh-agent средства криптографической защиты OpenSSH, позволяющая нарушителю выполнить произвольный код

ROS-20240212-01
Уязвимость OpenSSH
ELSA-2023-4428
ELSA-2023-4428: openssh security update (IMPORTANT)
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
---|---|---|---|---|
![]() | CVE-2023-38408 The PKCS#11 feature in ssh-agent in OpenSSH before 9.3p2 has an insufficiently trustworthy search path, leading to remote code execution if an agent is forwarded to an attacker-controlled system. (Code in /usr/lib is not necessarily safe for loading into ssh-agent.) NOTE: this issue exists because of an incomplete fix for CVE-2016-10009. | CVSS3: 9.8 | 58% Средний | почти 2 года назад |
![]() | CVE-2023-38408 The PKCS#11 feature in ssh-agent in OpenSSH before 9.3p2 has an insufficiently trustworthy search path, leading to remote code execution if an agent is forwarded to an attacker-controlled system. (Code in /usr/lib is not necessarily safe for loading into ssh-agent.) NOTE: this issue exists because of an incomplete fix for CVE-2016-10009. | CVSS3: 9.8 | 58% Средний | почти 2 года назад |
![]() | CVE-2023-38408 The PKCS#11 feature in ssh-agent in OpenSSH before 9.3p2 has an insufficiently trustworthy search path, leading to remote code execution if an agent is forwarded to an attacker-controlled system. (Code in /usr/lib is not necessarily safe for loading into ssh-agent.) NOTE: this issue exists because of an incomplete fix for CVE-2016-10009. | CVSS3: 9.8 | 58% Средний | почти 2 года назад |
CVE-2023-38408 The PKCS#11 feature in ssh-agent in OpenSSH before 9.3p2 has an insuff ... | CVSS3: 9.8 | 58% Средний | почти 2 года назад | |
![]() | SUSE-SU-2023:2950-1 Security update for openssh | 58% Средний | почти 2 года назад | |
![]() | SUSE-SU-2023:2947-1 Security update for openssh | 58% Средний | почти 2 года назад | |
![]() | SUSE-SU-2023:2946-1 Security update for openssh | 58% Средний | почти 2 года назад | |
![]() | SUSE-SU-2023:2945-1 Security update for openssh | 58% Средний | почти 2 года назад | |
![]() | SUSE-SU-2023:2940-1 Security update for openssh | 58% Средний | почти 2 года назад | |
![]() | RLSA-2023:4419 Important: openssh security update | 58% Средний | почти 2 года назад | |
GHSA-px36-p9hv-7h2v The PKCS#11 feature in ssh-agent in OpenSSH before 9.3p2 has an insufficiently trustworthy search path, leading to remote code execution if an agent is forwarded to an attacker-controlled system. (Code in /usr/lib is not necessarily safe for loading into ssh-agent.) NOTE: this issue exists because of an incomplete fix for CVE-2016-10009. | CVSS3: 9.8 | 58% Средний | почти 2 года назад | |
ELSA-2023-4419 ELSA-2023-4419: openssh security update (IMPORTANT) | почти 2 года назад | |||
ELSA-2023-4412 ELSA-2023-4412: openssh security update (IMPORTANT) | почти 2 года назад | |||
ELSA-2023-4382 ELSA-2023-4382: openssh security update (IMPORTANT) | почти 2 года назад | |||
ELSA-2023-12711 ELSA-2023-12711: openssh security update (CRITICAL) | почти 2 года назад | |||
![]() | BDU:2023-03950 Уязвимость функции PKCS#11 компонента ssh-agent средства криптографической защиты OpenSSH, позволяющая нарушителю выполнить произвольный код | CVSS3: 9.8 | 58% Средний | почти 2 года назад |
![]() | ROS-20240212-01 Уязвимость OpenSSH | CVSS3: 9.8 | 58% Средний | больше 1 года назад |
ELSA-2023-4428 ELSA-2023-4428: openssh security update (IMPORTANT) | почти 2 года назад |
Уязвимостей на страницу