Keycloak: impersonation via logout token exchange
Published Nov 17, 2024
3.4
LOWCVSS 3.1
EPSS 0.29%
Description
A flaw was found in Keycloak. This issue occurs due to improperly enforcing token types when validating signatures locally. This could allow an authenticated attacker to exchange a logout token for an access token and possibly gain access to data outside of enforced permissions.
Affected products
Default status is the baseline for the product, each version can override it (e.g. patched versions marked unaffected).
| Vendor | Product | Default status | Versions | |||
|---|---|---|---|---|---|---|
| Red Hat | Red Hat Single Sign-On 7 | affected |
|
No data.
No data.
Red Hat build of Keycloak 22
rhbk/keycloak-operator-bundle:22.0.10-1
Fixed · RHSA-2024:1867
Red Hat build of Keycloak 22
rhbk/keycloak-rhel9-operator:22-16
Fixed · RHSA-2024:1867
Red Hat build of Keycloak 22
rhbk/keycloak-rhel9:22-13
Fixed · RHSA-2024:1867
Red Hat build of Keycloak 22.0.10
keycloak
Fixed · RHSA-2024:1868
Red Hat Single Sign-On 7
rh-sso7-keycloak
Fix deferred
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat build of Keycloak 22 | rhbk/keycloak-operator-bundle:22.0.10-1 | Fixed | RHSA-2024:1867 |
| Red Hat build of Keycloak 22 | rhbk/keycloak-rhel9-operator:22-16 | Fixed | RHSA-2024:1867 |
| Red Hat build of Keycloak 22 | rhbk/keycloak-rhel9:22-13 | Fixed | RHSA-2024:1867 |
| Red Hat build of Keycloak 22.0.10 | keycloak | Fixed | RHSA-2024:1868 |
| Red Hat Single Sign-On 7 | rh-sso7-keycloak | Fix deferred | n/a |
No package ranges for this CVE.
Remediation
No remediation recorded yet.
References (8)
- https://access.redhat.com/errata/RHSA-2024:1867 vendor-advisoryx_refsource_REDHAT
- https://access.redhat.com/errata/RHSA-2024:1868 vendor-advisoryx_refsource_REDHAT
- https://access.redhat.com/security/cve/CVE-2023-0657 vdb-entryx_refsource_REDHATVendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2166728 issue-trackingx_refsource_REDHATIssue Tracking
- https://github.com/advisories/GHSA-7fpj-9hr8-28vh Advisory
- https://github.com/keycloak/keycloak/security/advisories/GHSA-7fpj-9hr8-28vh
- https://nvd.nist.gov/vuln/detail/CVE-2023-0657
- https://www.cve.org/CVERecord?id=CVE-2023-0657
| Link | Providers | Tags |
|---|---|---|
| https://access.redhat.com/errata/RHSA-2024:1867 | vendor-advisoryx_refsource_REDHAT | |
| https://access.redhat.com/errata/RHSA-2024:1868 | vendor-advisoryx_refsource_REDHAT | |
| https://access.redhat.com/security/cve/CVE-2023-0657 | vdb-entryx_refsource_REDHATVendor Advisory | |
| https://bugzilla.redhat.com/show_bug.cgi?id=2166728 | issue-trackingx_refsource_REDHATIssue Tracking | |
| https://github.com/advisories/GHSA-7fpj-9hr8-28vh | Advisory | |
| https://github.com/keycloak/keycloak/security/advisories/GHSA-7fpj-9hr8-28vh | ||
| https://nvd.nist.gov/vuln/detail/CVE-2023-0657 | ||
| https://www.cve.org/CVERecord?id=CVE-2023-0657 |
Change history (0)
No recorded changes yet.