VDB
BDU%3A2023-08559
BDU%3A2023-08559
PUBLISHED
CVSS 5.300000190734863 MEDIUM
Уязвимость механизма аутентификации WebAuthn программного средства для управления идентификацией и доступом Keycloak, позволяющая нарушителю оказать влияние на целостность защищаемой информации
Risk Scores
CVSS 3.1
5.300000190734863
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Red Hat | RHEL-8 based Middleware Containers | 7.6.8-2 |
| Red Hat | Red Hat build of Keycloak 22 | 22-13 |
| Red Hat | Red Hat build of Keycloak 22 | 22-16 |
| Red Hat | RHEL-8 based Middleware Containers | 7.6-18 |
| Red Hat | RHSSO 7.6.8 | |
| Red Hat | Red Hat Single Sign-On 7 | |
| Red Hat | Red Hat Single Sign-On 7.6 for RHEL 8 | 0:18.0.13-1.redhat_00001.1.el8sso, 0:18.0.12-1.redhat_00001.1.el8sso |
| Red Hat | Red Hat build of Keycloak 22.0.10 | |
| Red Hat | RHEL-8 based Middleware Containers | 7.6-41, 7.6-46 |
| Red Hat | RHEL-8 based Middleware Containers | 7.6-16 |
| Red Hat | Red Hat Single Sign-On 7.6 for RHEL 9 | 0:18.0.13-1.redhat_00001.1.el9sso, 0:18.0.12-1.redhat_00001.1.el9sso |
| Red Hat | Red Hat build of Keycloak 22 | 22.0.10-1 |
| Red Hat | Red Hat Single Sign-On 7.6 for RHEL 7 | 0:18.0.12-1.redhat_00001.1.el7sso, 0:18.0.13-1.redhat_00001.1.el7sso |
| 0, 23.0.0 | ||
| Red Hat Inc. | Red Hat Single Sign-On, Keycloak |
Timeline
- Dec 11, 2023 CVE Published
- May 31, 2026 Distribution Patch
- May 31, 2026 Distribution Patch
- May 31, 2026 Distribution Patch
- May 31, 2026 Distribution Patch
- May 31, 2026 Distribution Patch
- May 31, 2026 Distribution Patch
- May 31, 2026 Distribution Patch
- May 31, 2026 Distribution Patch
- May 31, 2026 Security Advisory
- May 31, 2026 Security Advisory
- May 31, 2026 Security Advisory
References
- https://vuldb.com/ru/?id.246788 url
- RHSA-2024:0799 vendor-advisory
- RHSA-2024:0800 vendor-advisory
- RHSA-2024:0801 vendor-advisory
- RHSA-2024:0804 vendor-advisory
- RHSA-2024:1860 vendor-advisory
- RHSA-2024:1861 vendor-advisory
- RHSA-2024:1864 vendor-advisory
- RHSA-2024:1868 vendor-advisory
- RHBZ#2248423 issue
- RHSA-2024:0798 vendor-advisory
- RHSA-2024:1862 vendor-advisory
- RHSA-2024:1865 vendor-advisory
- RHSA-2024:1866 vendor-advisory
- RHSA-2024:1867 vendor-advisory
- https://access.redhat.com/security/cve/CVE-2023-6484 vdb
- https://security.snyk.io/vuln/SNYK-RHEL8-RHSSO7KEYCLOAKSERVER-6097475 url
- https://github.com/keycloak/keycloak/issues/25078 url
- https://access.redhat.com/security/cve/cve-2023-6484 url