Improper Authentication in OpenSSH - CVE-2023-51767

 

Improper Authentication in OpenSSH - CVE-2023-51767

Published: May 16, 2024


Vulnerability identifier: #VU89587
CSH Severity: Low
CVSS v4: 7.3 [CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2023-51767
CWE-ID: CWE-287
Exploitation vector: Local access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a local user to bypass authentication process.

The vulnerability exists due to an error in when processing authentication requests. A local user can bypass authentication process and gain unauthorized access to the application by conducting a row hammer attack against the mm_answer_authpassword integer value to flip a single bit.


Affected software

OpenSSH
IBM Security Verify Access
IBM Qradar SIEM
Verify Identity Access Digital Credentials
Storage Protect Plus Server
IQ Engine
IBM Integrated Analytics System
Dell Secure Connect Gateway
RecoverPoint for VMs

How to mitigate CVE-2023-51767

Install updates from vendor's website.

IQ Engine - update to 10.8r5
IBM Integrated Analytics System - update to 1.0.30.0
Dell Secure Connect Gateway - update to 5.24.00.14
RecoverPoint for VMs - update to 6.0.SP1.P1
Storage Protect Plus Server - update to 10.1.16.2

External References

Related Security Bulletins