CVE-2023-23761: Improper authentication vulnerability in GitHub Enterprise Server leading to modification of secret gists
An improper authentication vulnerability was identified in GitHub Enterprise Server that allowed an unauthorized actor to modify other users' secret gists by authenticating through an SSH certificate authority. To do so, a user had to know the secret gist's URL. This vulnerability affected all versions of GitHub Enterprise Server prior to 3.9 and was fixed in versions 3.4.18, 3.5.15, 3.6.11, 3.7.8, and 3.8.1. This vulnerability was reported via the GitHub Bug Bounty program.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-23761?
CVE-2023-23761 is an improper authentication vulnerability in GitHub Enterprise Server that allows unauthorized actors to modify other users' secret gists by authenticating through an SSH certificate authority.
Which versions of GitHub Enterprise Server are affected by CVE-2023-23761?
The versions of GitHub Enterprise Server affected by CVE-2023-23761 are 3.4.18, 3.5.0 to 3.5.15, 3.6.0 to 3.6.11, 3.7.0 to 3.7.8, and 3.8.0.
What is the severity level of CVE-2023-23761?
The severity level of CVE-2023-23761 is high, with a severity value of 5.3.
How can an unauthorized actor exploit CVE-2023-23761?
An unauthorized actor can exploit CVE-2023-23761 by authenticating through an SSH certificate authority and knowing the secret gist's URL to modify other users' secret gists.
Where can I find more information about CVE-2023-23761?
You can find more information about CVE-2023-23761 in the GitHub Enterprise Server release notes for versions 3.4.18, 3.5.15, and 3.6.11.