ssh-add in OpenSSH before 9.3 adds smartcard keys to ssh-agent without the intended per-hop destination constraints. The earliest affected version is 8.9.
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HNetapp Brocade Fabric Operating System
OSNetappall versionsNetapp Hci Bootstrap Os
OSNetappall versionsNetapp Solidfire Element Os
OSNetappall versionsOpenbsd OpenSSH
APPOpenbsd8.9 – 9.3 (excl.)
🟢
PATCH AVAILABLE
Vendor update available. Deploy in standard maintenance cycle.
References
Related vulnerabilities
CVE-2023-38408CRITICAL9.8PL ✓same product
RCE w OpenSSH ssh-agent przez niezaufaną ścieżkę ładowania PKCS#11
CVE-2016-1908CRITICAL9.8PL ✓same product
OpenSSH: pominięcie kontroli dostępu w przekierowaniu X11 (Auth Bypass)
CVE-2010-4478CRITICAL9.8PL ✓same product
OpenSSH J-PAKE — pominięcie uwierzytelnienia przez nieprawidłowe parametry
CVE-2002-0639CRITICAL9.8PL ✓same product
Integer overflow w OpenSSH umożliwiający zdalne wykonanie kodu (RCE)
CVE-2002-0083CRITICAL9.8PL ✓same product
OpenSSH: błąd off-by-one w kodzie kanałów umożliwia eskalację uprawnień