[RHSA-2024:0606] openssh security update
Severity
Moderate
Affected Packages
32
CVEs
2
OpenSSH is an SSH protocol implementation supported by a number of Linux, UNIX, and similar operating systems. It includes the core files necessary for both the OpenSSH client and server.
Security Fix(es):
ssh: Prefix truncation attack on Binary Packet Protocol (BPP) (CVE-2023-48795)
openssh: potential command injection via shell metacharacters (CVE-2023-51385)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
- ID
- RHSA-2024:0606
- Severity
- moderate
- URL
- https://access.redhat.com/errata/RHSA-2024:0606
- Published
-
2024-01-30T00:00:00
(7 months ago) - Modified
-
2024-01-30T00:00:00
(7 months ago) - Rights
- Copyright 2024 Red Hat, Inc.
- Other Advisories
-
- ALAS-2023-1898
- ALAS2-2023-2376
- ALAS2-2024-2507
- ALPINE:CVE-2023-48795
- ALPINE:CVE-2023-51385
- ALSA-2024:0606
- ALSA-2024:0628
- ALSA-2024:1130
- ALSA-2024:1150
- DSA-5586-1
- DSA-5588-1
- DSA-5591-1
- DSA-5599-1
- DSA-5600-1
- DSA-5601-1
- DSA-5750-1
- ELSA-2024-0606
- ELSA-2024-0628
- ELSA-2024-1130
- ELSA-2024-1150
- ELSA-2024-12157
- ELSA-2024-12158
- ELSA-2024-12164
- ELSA-2024-12232
- ELSA-2024-12233
- ELSA-2024-2988
- FEDORA-2023-0733306be9
- FEDORA-2023-153404713b
- FEDORA-2023-20feb865d8
- FEDORA-2023-55800423a8
- FEDORA-2023-b87ec6cf47
- FEDORA-2023-cb8c606fbb
- FEDORA-2023-e77300e4b5
- FEDORA-2024-06ebb70bdd
- FEDORA-2024-2705241461
- FEDORA-2024-37627e432e
- FEDORA-2024-39a8c72ea9
- FEDORA-2024-3bb23c77f3
- FEDORA-2024-3fd1bc9276
- FEDORA-2024-71c2c6526c
- FEDORA-2024-7b08207cdb
- FEDORA-2024-7e301327c2
- FEDORA-2024-a53b24023d
- FEDORA-2024-ae653fb07b
- FEDORA-2024-d946b9ad25
- FEDORA-2024-fb32950d11
- FREEBSD:0F7598CC-9FE2-11EE-B47F-901B0E9408DC
- FREEBSD:13D83980-9F18-11EE-8E38-002590C1F29C
- FREEBSD:4EBDD56B-FE72-11EE-BC57-00E081B7AA2D
- FREEBSD:91955195-9EBB-11EE-BC14-A703705DB3A6
- FREEBSD:B5E22EC5-BC4B-11EE-B0B5-B42E991FC52E
- GLSA-202312-16
- GLSA-202312-17
- GLSA-202407-11
- GLSA-202407-12
- GO-2023-2402
- JENKINS:SECURITY-3333
- JENKINS:SECURITY-3386
- openSUSE-SU-2023:0411-1
- openSUSE-SU-2023:0421-1
- openSUSE-SU-2024:0005-1
- openSUSE-SU-2024:0008-1
- openSUSE-SU-2024:0036-1
- RHBA-2024:1127
- RHBA-2024:1136
- RHSA-2024:0628
- RHSA-2024:1130
- RHSA-2024:1150
- RHSA-2024:2988
- RLSA-2024:0606
- RLSA-2024:0628
- SSA:2023-353-01
- SSA:2023-354-01
- SUSE-SU-2023:4902-1
- SUSE-SU-2023:4903-1
- SUSE-SU-2023:4904-1
- SUSE-SU-2023:4905-1
- SUSE-SU-2023:4946-1
- SUSE-SU-2024:0006-1
- SUSE-SU-2024:0035-1
- SUSE-SU-2024:0140-1
- SUSE-SU-2024:0210-1
- SUSE-SU-2024:0224-1
- SUSE-SU-2024:0327-1
- SUSE-SU-2024:0430-1
- SUSE-SU-2024:0460-1
- SUSE-SU-2024:0525-1
- SUSE-SU-2024:0539-1
- SUSE-SU-2024:0543-1
- SUSE-SU-2024:0558-1
- SUSE-SU-2024:0596-1
- SUSE-SU-2024:0603-1
- SUSE-SU-2024:0604-1
- SUSE-SU-2024:0972-1
- SUSE-SU-2024:0974-1
- SUSE-SU-2024:2393-1
- USN-6560-1
- USN-6560-2
- USN-6560-3
- USN-6561-1
- USN-6565-1
- USN-6585-1
- USN-6589-1
- USN-6598-1
- USN-6738-1
Source | # ID | Name | URL |
---|---|---|---|
Bugzilla | 2254210 | https://bugzilla.redhat.com/2254210 | |
Bugzilla | 2255271 | https://bugzilla.redhat.com/2255271 | |
RHSA | RHSA-2024:0606 | https://access.redhat.com/errata/RHSA-2024:0606 | |
CVE | CVE-2023-48795 | https://access.redhat.com/security/cve/CVE-2023-48795 | |
CVE | CVE-2023-51385 | https://access.redhat.com/security/cve/CVE-2023-51385 |
Type | Package URL | Namespace | Name / Product | Version | Distribution / Platform | Arch | Patch / Fix |
---|---|---|---|---|---|---|---|
Affected | pkg:rpm/redhat/pam_ssh_agent_auth?arch=x86_64&distro=redhat-8.9 | redhat | pam_ssh_agent_auth | < 0.10.3-7.19.el8_9.2 | redhat-8.9 | x86_64 | |
Affected | pkg:rpm/redhat/pam_ssh_agent_auth?arch=s390x&distro=redhat-8.9 | redhat | pam_ssh_agent_auth | < 0.10.3-7.19.el8_9.2 | redhat-8.9 | s390x | |
Affected | pkg:rpm/redhat/pam_ssh_agent_auth?arch=ppc64le&distro=redhat-8.9 | redhat | pam_ssh_agent_auth | < 0.10.3-7.19.el8_9.2 | redhat-8.9 | ppc64le | |
Affected | pkg:rpm/redhat/pam_ssh_agent_auth?arch=aarch64&distro=redhat-8.9 | redhat | pam_ssh_agent_auth | < 0.10.3-7.19.el8_9.2 | redhat-8.9 | aarch64 | |
Affected | pkg:rpm/redhat/openssh?arch=x86_64&distro=redhat-8.9 | redhat | openssh | < 8.0p1-19.el8_9.2 | redhat-8.9 | x86_64 | |
Affected | pkg:rpm/redhat/openssh?arch=s390x&distro=redhat-8.9 | redhat | openssh | < 8.0p1-19.el8_9.2 | redhat-8.9 | s390x | |
Affected | pkg:rpm/redhat/openssh?arch=ppc64le&distro=redhat-8.9 | redhat | openssh | < 8.0p1-19.el8_9.2 | redhat-8.9 | ppc64le | |
Affected | pkg:rpm/redhat/openssh?arch=aarch64&distro=redhat-8.9 | redhat | openssh | < 8.0p1-19.el8_9.2 | redhat-8.9 | aarch64 | |
Affected | pkg:rpm/redhat/openssh-server?arch=x86_64&distro=redhat-8.9 | redhat | openssh-server | < 8.0p1-19.el8_9.2 | redhat-8.9 | x86_64 | |
Affected | pkg:rpm/redhat/openssh-server?arch=s390x&distro=redhat-8.9 | redhat | openssh-server | < 8.0p1-19.el8_9.2 | redhat-8.9 | s390x | |
Affected | pkg:rpm/redhat/openssh-server?arch=ppc64le&distro=redhat-8.9 | redhat | openssh-server | < 8.0p1-19.el8_9.2 | redhat-8.9 | ppc64le | |
Affected | pkg:rpm/redhat/openssh-server?arch=aarch64&distro=redhat-8.9 | redhat | openssh-server | < 8.0p1-19.el8_9.2 | redhat-8.9 | aarch64 | |
Affected | pkg:rpm/redhat/openssh-ldap?arch=x86_64&distro=redhat-8.9 | redhat | openssh-ldap | < 8.0p1-19.el8_9.2 | redhat-8.9 | x86_64 | |
Affected | pkg:rpm/redhat/openssh-ldap?arch=s390x&distro=redhat-8.9 | redhat | openssh-ldap | < 8.0p1-19.el8_9.2 | redhat-8.9 | s390x | |
Affected | pkg:rpm/redhat/openssh-ldap?arch=ppc64le&distro=redhat-8.9 | redhat | openssh-ldap | < 8.0p1-19.el8_9.2 | redhat-8.9 | ppc64le | |
Affected | pkg:rpm/redhat/openssh-ldap?arch=aarch64&distro=redhat-8.9 | redhat | openssh-ldap | < 8.0p1-19.el8_9.2 | redhat-8.9 | aarch64 | |
Affected | pkg:rpm/redhat/openssh-keycat?arch=x86_64&distro=redhat-8.9 | redhat | openssh-keycat | < 8.0p1-19.el8_9.2 | redhat-8.9 | x86_64 | |
Affected | pkg:rpm/redhat/openssh-keycat?arch=s390x&distro=redhat-8.9 | redhat | openssh-keycat | < 8.0p1-19.el8_9.2 | redhat-8.9 | s390x | |
Affected | pkg:rpm/redhat/openssh-keycat?arch=ppc64le&distro=redhat-8.9 | redhat | openssh-keycat | < 8.0p1-19.el8_9.2 | redhat-8.9 | ppc64le | |
Affected | pkg:rpm/redhat/openssh-keycat?arch=aarch64&distro=redhat-8.9 | redhat | openssh-keycat | < 8.0p1-19.el8_9.2 | redhat-8.9 | aarch64 | |
Affected | pkg:rpm/redhat/openssh-clients?arch=x86_64&distro=redhat-8.9 | redhat | openssh-clients | < 8.0p1-19.el8_9.2 | redhat-8.9 | x86_64 | |
Affected | pkg:rpm/redhat/openssh-clients?arch=s390x&distro=redhat-8.9 | redhat | openssh-clients | < 8.0p1-19.el8_9.2 | redhat-8.9 | s390x | |
Affected | pkg:rpm/redhat/openssh-clients?arch=ppc64le&distro=redhat-8.9 | redhat | openssh-clients | < 8.0p1-19.el8_9.2 | redhat-8.9 | ppc64le | |
Affected | pkg:rpm/redhat/openssh-clients?arch=aarch64&distro=redhat-8.9 | redhat | openssh-clients | < 8.0p1-19.el8_9.2 | redhat-8.9 | aarch64 | |
Affected | pkg:rpm/redhat/openssh-cavs?arch=x86_64&distro=redhat-8.9 | redhat | openssh-cavs | < 8.0p1-19.el8_9.2 | redhat-8.9 | x86_64 | |
Affected | pkg:rpm/redhat/openssh-cavs?arch=s390x&distro=redhat-8.9 | redhat | openssh-cavs | < 8.0p1-19.el8_9.2 | redhat-8.9 | s390x | |
Affected | pkg:rpm/redhat/openssh-cavs?arch=ppc64le&distro=redhat-8.9 | redhat | openssh-cavs | < 8.0p1-19.el8_9.2 | redhat-8.9 | ppc64le | |
Affected | pkg:rpm/redhat/openssh-cavs?arch=aarch64&distro=redhat-8.9 | redhat | openssh-cavs | < 8.0p1-19.el8_9.2 | redhat-8.9 | aarch64 | |
Affected | pkg:rpm/redhat/openssh-askpass?arch=x86_64&distro=redhat-8.9 | redhat | openssh-askpass | < 8.0p1-19.el8_9.2 | redhat-8.9 | x86_64 | |
Affected | pkg:rpm/redhat/openssh-askpass?arch=s390x&distro=redhat-8.9 | redhat | openssh-askpass | < 8.0p1-19.el8_9.2 | redhat-8.9 | s390x | |
Affected | pkg:rpm/redhat/openssh-askpass?arch=ppc64le&distro=redhat-8.9 | redhat | openssh-askpass | < 8.0p1-19.el8_9.2 | redhat-8.9 | ppc64le | |
Affected | pkg:rpm/redhat/openssh-askpass?arch=aarch64&distro=redhat-8.9 | redhat | openssh-askpass | < 8.0p1-19.el8_9.2 | redhat-8.9 | aarch64 |
# CVE | Description | CVSS | EPSS | EPSS Trend (30 days) | Affected Products | Weaknesses | Security Advisories | Exploits | PoC | Pubblication Date | Modification Date |
---|---|---|---|---|---|---|---|---|---|---|---|
# CVE | Description | CVSS | EPSS | EPSS Trend (30 days) | Affected Products | Weaknesses | Security Advisories | PoC | Pubblication Date | Modification Date |