CRITICAL
User authentication bypass in wolfSSH server
Published Mar 25, 2024
9.1
CRITICALCVSS 3.1
EPSS 0.62%
Description
A vulnerability was found in wolfSSH's server-side state machine before versions 1.4.17. A malicious client could create channels without first performing user authentication, resulting in unauthorized access.
Affected products
-
- Version 0StatusaffectedConstraints<=v1.4.16
- Version
Default status is the baseline for the product, each version can override it (e.g. patched versions marked unaffected).
| Vendor | Product | Default status | Versions | ||||||
|---|---|---|---|---|---|---|---|---|---|
| wolfSSL Inc. | wolfSSH | unaffected |
|
-
- Version 0StatusaffectedConstraints<1.4.16
- Version
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
Vendor solution
The fix for this issue is located in the following GitHub Pull Requests: * https://github.com/wolfSSL/wolfssh/pull/670
* https://github.com/wolfSSL/wolfssh/pull/671
Weaknesses (1)
References (4)
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2024-27817 Advisory
- https://github.com/wolfSSL/wolfssh/pull/670 patchIssue Tracking
- https://github.com/wolfSSL/wolfssh/pull/671 patchIssue Tracking
- https://www.wolfssl.com/docs/security-vulnerabilities/ vendor-advisoryVendor Advisory
| Link | Providers | Tags |
|---|---|---|
| https://euvd.enisa.europa.eu/vulnerability/EUVD-2024-27817 | Advisory | |
| https://github.com/wolfSSL/wolfssh/pull/670 | patchIssue Tracking | |
| https://github.com/wolfSSL/wolfssh/pull/671 | patchIssue Tracking | |
| https://www.wolfssl.com/docs/security-vulnerabilities/ | vendor-advisoryVendor Advisory |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner wolfSSL
Published Mar 25, 2024
Updated Aug 1, 2024
Reserved Mar 25, 2024
Link CVE-2024-2873
CISA Vulnrichment
Updated Aug 1, 2024
ENISA EUVD
EUVD-2024-27817 Assigner wolfSSL
Published Mar 25, 2024
Updated Aug 1, 2024
Exploited since n/a
Link EUVD-2024-27817