CVE-2023-28531
17.03.2023, 04:15
ssh-add in OpenSSH before 9.3 adds smartcard keys to ssh-agent without the intended per-hop destination constraints. The earliest affected version is 8.9.Enginsight
| Vendor | Product | Version |
|---|---|---|
| openbsd | openssh | 8.9 ≤ 𝑥 < 9.3 |
| netapp | brocade_fabric_operating_system | - |
| netapp | hci_bootstrap_os | - |
| netapp | solidfire_element_os | - |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Ubuntu Product | |||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| openssh |
| ||||||||||||||||
| openssh-ssh1 |
|
References