CVE-2023-51767
OpenSSH through 10.0, when common types of DRAM are used, might allow row hammer attacks (for authentication bypass) because the integer value of authenticated in mm_answer_authpassword does not resist flips of a single bit. NOTE: this is applicable to a certain threat model of attacker-victim co-location in which the attacker has user privileges. NOTE: this is disputed by the Supplier, who states "we do not consider it to be the application's responsibility to defend against platform architectural weaknesses."
- Openbsd Openssh
- All versions
- CVSS 3.1
- 7.0 HIGH
- EPSS
- 0.7% (48th percentile)
- NVD status
- Modified
- Published
- 2023-12-24
No indexed exploits for CVE-2023-51767 yet
Our index is partial: it proves presence, never absence
No exploit for CVE-2023-51767 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.