CVE-2024-2873: User authentication bypass in wolfSSH server
Published Mar 25, 2024
·Updated
A vulnerability was found in wolfSSH's server-side state machine before versions 1.4.17. A malicious client could create channels without first performing user authentication, resulting in unauthorized access.
Affected Software
2 affected components
WolfSSH WolfSSH<1.4.17
WolfSSH WolfSSH<1.4.17
Remediation
Information
The fix for this issue is located in the following GitHub Pull Requests:
* https://github.com/wolfSSL/wolfssh/pull/670
* https://github.com/wolfSSL/wolfssh/pull/671
Event History
Mar 25, 2024
CVE Published
via MITRE·09:58 PM
Data Sourced
via MITRE·09:58 PM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·10:37 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-2873?
The severity of CVE-2024-2873 is considered high due to the potential for unauthorized access by malicious clients.
2
How do I fix CVE-2024-2873?
To fix CVE-2024-2873, upgrade wolfSSH to version 1.4.17 or later.
3
What types of systems are affected by CVE-2024-2873?
CVE-2024-2873 affects server-side implementations of wolfSSH prior to version 1.4.17.
4
What impact does CVE-2024-2873 have on security?
CVE-2024-2873 can lead to unauthorized channel creation, which compromises server security.
5
Is CVE-2024-2873 an authenticated or unauthenticated vulnerability?
CVE-2024-2873 is an unauthenticated vulnerability allowing access without prior user authentication.