CVE-2023-28531 is a critical vulnerability in OpenSSH versions 8.9 through 9.2, where the ssh-add utility incorrectly adds smartcard keys to ssh-agent without proper per-hop destination constraints. This flaw, affecting products like NetApp and OpenBSD, carries a CVSS score of 9.8, indicating a severe risk of compromise (Confidentiality, Integrity, Availability). While there is no known active exploitation or public exploit code (Metasploit, Nuclei, ExploitDB), the vulnerability has garnered significant community discussion, suggesting awareness and potential future exploitation.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 8.9, < 9.3CPE matchmatch criteria | cpe:2.3:a:openbsd:openssh:*:*:*:*:*:*:*:* | ||
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:o:netapp:brocade_fabric_operating_system:-:*:*:*:*:*:*:* | ||
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:o:netapp:hci_bootstrap_os:-:*:*:*:*:*:*:* | ||
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:o:netapp:solidfire_element_os:-:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.3 Mastodon, and 2.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
CVE-2023-28531
Jun 11, 2024HP ThinPro 8.1 SP 2 Security Updates
Apr 12, 2024HP ThinPro 8.1 SP 2 Security Updates
Apr 12, 2024openssh: smartcard keys to ssh-agent without the intended per-hop destination constraints.
Mar 17, 2023ssh-add in OpenSSH before 9.3 adds smartcard keys to ssh-agent without the intended per-hop destination constraints. The earliest affected version is 8.9.
Mar 14, 2023