CVE-2023-5616

In Ubuntu, gnome-control-center did not properly reflect SSH remote login status when the system was configured to use systemd socket activation for openssh-server. This could unknowingly leave the local machine exposed to remote SSH access contrary to expectation of the user.
Configurations

No configuration.

History

16 Apr 2025, 13:25

Type Values Removed Values Added
Summary
  • (es) En Ubuntu, gnome-control-center no reflejaba correctamente el estado de inicio de sesión remoto SSH cuando el sistema estaba configurado para usar la activación del socket systemd para openssh-server. Esto podía dejar, sin que el usuario lo supiera, la máquina local expuesta al acceso remoto SSH, contrariamente a lo esperado.

15 Apr 2025, 21:15

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 4.9
CWE CWE-290

15 Apr 2025, 19:16

Type Values Removed Values Added
New CVE

Information

Published : 2025-04-15 19:16

Updated : 2025-04-16 13:25


NVD link : CVE-2023-5616

Mitre link : CVE-2023-5616

CVE.ORG link : CVE-2023-5616


JSON object : View

Products Affected

No product.

CWE
CWE-290

Authentication Bypass by Spoofing