Keycloak: authorization bypass
Published Apr 25, 2024
5.4
MEDIUMCVSS 3.1
EPSS 1.07%
Description
A flaw was found in the Keycloak package. This issue occurs due to a permissive regular expression hardcoded for filtering which allows hosts to register a dynamic client. A malicious user with enough information about the environment could jeopardize an environment with this specific Dynamic Client Registration and TrustedDomain configuration previously unauthorized.
Affected products
No data.
No data.
No data.
RHEL-8 based Middleware Containers
rh-sso-7/sso76-openshift-rhel8:7.6-46
Fixed · RHSA-2024:1864
RHSSO 7.6.8
rh-sso7-keycloak
Fixed · RHSA-2024:1866
Red Hat Single Sign-On 7.6 for RHEL 7
rh-sso7-keycloak-0:18.0.13-1.redhat_00001.1.el7sso
Fixed · RHSA-2024:1860
Red Hat Single Sign-On 7.6 for RHEL 8
rh-sso7-keycloak-0:18.0.13-1.redhat_00001.1.el8sso
Fixed · RHSA-2024:1861
Red Hat Single Sign-On 7.6 for RHEL 9
rh-sso7-keycloak-0:18.0.13-1.redhat_00001.1.el9sso
Fixed · RHSA-2024:1862
Red Hat build of Keycloak 22
rhbk/keycloak-operator-bundle:22.0.10-1
Fixed · RHSA-2024:1867
Red Hat build of Keycloak 22
rhbk/keycloak-rhel9-operator:22-16
Fixed · RHSA-2024:1867
Red Hat build of Keycloak 22
rhbk/keycloak-rhel9:22-13
Fixed · RHSA-2024:1867
Red Hat build of Keycloak 22.0.10
keycloak-core
Fixed · RHSA-2024:1868
| Product | Package | State | Advisory |
|---|---|---|---|
| RHEL-8 based Middleware Containers | rh-sso-7/sso76-openshift-rhel8:7.6-46 | Fixed | RHSA-2024:1864 |
| RHSSO 7.6.8 | rh-sso7-keycloak | Fixed | RHSA-2024:1866 |
| Red Hat Single Sign-On 7.6 for RHEL 7 | rh-sso7-keycloak-0:18.0.13-1.redhat_00001.1.el7sso | Fixed | RHSA-2024:1860 |
| Red Hat Single Sign-On 7.6 for RHEL 8 | rh-sso7-keycloak-0:18.0.13-1.redhat_00001.1.el8sso | Fixed | RHSA-2024:1861 |
| Red Hat Single Sign-On 7.6 for RHEL 9 | rh-sso7-keycloak-0:18.0.13-1.redhat_00001.1.el9sso | Fixed | RHSA-2024:1862 |
| Red Hat build of Keycloak 22 | rhbk/keycloak-operator-bundle:22.0.10-1 | Fixed | RHSA-2024:1867 |
| Red Hat build of Keycloak 22 | rhbk/keycloak-rhel9-operator:22-16 | Fixed | RHSA-2024:1867 |
| Red Hat build of Keycloak 22 | rhbk/keycloak-rhel9:22-13 | Fixed | RHSA-2024:1867 |
| Red Hat build of Keycloak 22.0.10 | keycloak-core | Fixed | RHSA-2024:1868 |
No package ranges for this CVE.
Remediation
Vendor solution
No mitigation is currently available for this flaw.
Red Hat statement
Due to the high complexity of this attack, Red Hat considers this a Moderate impact.
Red Hat mitigation
No mitigation is currently available for this flaw.
References (13)
- https://access.redhat.com/errata/RHSA-2024:1860 vendor-advisoryx_refsource_REDHAT
- https://access.redhat.com/errata/RHSA-2024:1861 vendor-advisoryx_refsource_REDHAT
- https://access.redhat.com/errata/RHSA-2024:1862 vendor-advisoryx_refsource_REDHAT
- https://access.redhat.com/errata/RHSA-2024:1864 vendor-advisoryx_refsource_REDHAT
- https://access.redhat.com/errata/RHSA-2024:1866 vendor-advisoryx_refsource_REDHAT
- https://access.redhat.com/errata/RHSA-2024:1867 vendor-advisoryx_refsource_REDHAT
- https://access.redhat.com/errata/RHSA-2024:1868 vendor-advisoryx_refsource_REDHAT
- https://access.redhat.com/security/cve/CVE-2023-6544 vdb-entryx_refsource_REDHATVendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2253116 issue-trackingx_refsource_REDHATIssue Tracking
- https://github.com/advisories/GHSA-46c8-635v-68r2 Advisory
- https://github.com/keycloak/keycloak/security/advisories/GHSA-46c8-635v-68r2
- https://nvd.nist.gov/vuln/detail/CVE-2023-6544
- https://www.cve.org/CVERecord?id=CVE-2023-6544
Change history (0)
No recorded changes yet.