Логотип exploitDog
bind:CVE-2023-51767
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-51767

Количество 5

Количество 5

redhat логотип

CVE-2023-51767

больше 1 года назад

OpenSSH through 9.6, when common types of DRAM are used, might allow row hammer attacks (for authentication bypass) because the integer value of authenticated in mm_answer_authpassword does not resist flips of a single bit. NOTE: this is applicable to a certain threat model of attacker-victim co-location in which the attacker has user privileges.

CVSS3: 7
EPSS: Низкий
nvd логотип

CVE-2023-51767

больше 1 года назад

OpenSSH through 9.6, when common types of DRAM are used, might allow row hammer attacks (for authentication bypass) because the integer value of authenticated in mm_answer_authpassword does not resist flips of a single bit. NOTE: this is applicable to a certain threat model of attacker-victim co-location in which the attacker has user privileges.

CVSS3: 7
EPSS: Низкий
debian логотип

CVE-2023-51767

больше 1 года назад

OpenSSH through 9.6, when common types of DRAM are used, might allow r ...

CVSS3: 7
EPSS: Низкий
github логотип

GHSA-27q9-h529-q4g3

больше 1 года назад

OpenSSH through 9.6, when common types of DRAM are used, might allow row hammer attacks (for authentication bypass) because the integer value of authenticated in mm_answer_authpassword does not resist flips of a single bit. NOTE: this is applicable to a certain threat model of attacker-victim co-location in which the attacker has user privileges.

CVSS3: 7
EPSS: Низкий
fstec логотип

BDU:2024-00107

больше 1 года назад

Уязвимость функции mm_answer_authpassword() cредства криптографической защиты OpenSSH, позволяющая нарушителю реализовать атаку Rowhammer и обойти процедуру аутентификации

CVSS3: 7
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
redhat логотип
CVE-2023-51767

OpenSSH through 9.6, when common types of DRAM are used, might allow row hammer attacks (for authentication bypass) because the integer value of authenticated in mm_answer_authpassword does not resist flips of a single bit. NOTE: this is applicable to a certain threat model of attacker-victim co-location in which the attacker has user privileges.

CVSS3: 7
0%
Низкий
больше 1 года назад
nvd логотип
CVE-2023-51767

OpenSSH through 9.6, when common types of DRAM are used, might allow row hammer attacks (for authentication bypass) because the integer value of authenticated in mm_answer_authpassword does not resist flips of a single bit. NOTE: this is applicable to a certain threat model of attacker-victim co-location in which the attacker has user privileges.

CVSS3: 7
0%
Низкий
больше 1 года назад
debian логотип
CVE-2023-51767

OpenSSH through 9.6, when common types of DRAM are used, might allow r ...

CVSS3: 7
0%
Низкий
больше 1 года назад
github логотип
GHSA-27q9-h529-q4g3

OpenSSH through 9.6, when common types of DRAM are used, might allow row hammer attacks (for authentication bypass) because the integer value of authenticated in mm_answer_authpassword does not resist flips of a single bit. NOTE: this is applicable to a certain threat model of attacker-victim co-location in which the attacker has user privileges.

CVSS3: 7
0%
Низкий
больше 1 года назад
fstec логотип
BDU:2024-00107

Уязвимость функции mm_answer_authpassword() cредства криптографической защиты OpenSSH, позволяющая нарушителю реализовать атаку Rowhammer и обойти процедуру аутентификации

CVSS3: 7
0%
Низкий
больше 1 года назад

Уязвимостей на страницу