Lucene search

K
prionPRIOn knowledge basePRION:CVE-2023-28531
HistoryMar 17, 2023 - 4:15 a.m.

Code injection

2023-03-1704:15:00
PRIOn knowledge base
www.prio-n.com
2569
code injection
openssh
smartcard keys
ssh-agent
per-hop destination constraints
nvd

9.2 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

46.7%

ssh-add in OpenSSH before 9.3 adds smartcard keys to ssh-agent without the intended per-hop destination constraints. The earliest affected version is 8.9.

CPENameOperatorVersion
opensshge8.9
opensshlt9.3