CVE-2023-28531
17.03.2023, 04:15
ssh-add in OpenSSH before 9.3 adds smartcard keys to ssh-agent without the intended per-hop destination constraints. The earliest affected version is 8.9.Enginsight
Vendor | Product | Version |
---|---|---|
openbsd | openssh | 8.9 ≤ 𝑥 < 9.3 |
netapp | brocade_fabric_operating_system | - |
netapp | hci_bootstrap_os | - |
netapp | solidfire_element_os | - |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Ubuntu Product | |||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
openssh |
| ||||||||||||||||
openssh-ssh1 |
|
References