VDB
CVE-2023-38037
CVE-2023-38037
PUBLISHED
CVSS 9.300000190734863 CRITICAL
Red Hat Satellite dient als zentrale Stelle für das Management, die Verteilung von Updates in Netzwerken mit Red Hat Enterprise Linux Systemen. Red Hat Enterprise Linux (RHEL) ist eine populäre Linux-Distribution.
EPSS 0.10% · 26.9th percentile
Risk Scores
CVSS v4.0
9.300000190734863
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
EPSS Score
0.10%
26.9th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Red Hat | Red Hat Satellite <6.15.0 | |
| Debian | Debian Linux | |
| Open Source | Open Source Ruby on Rails <6.1.7.5 | |
| SUSE | SUSE openSUSE | |
| Open Source | Open Source Ruby on Rails >=5.2.0 | |
| Red Hat | Red Hat OpenShift Logging Subsystem <5.8.1 | |
| Fedora | Fedora Linux | |
| HCL | HCL BigFix Compliance <2.0.11 | |
| Red Hat | Red Hat Enterprise Linux | |
| IBM | IBM MQ Operator | |
| Open Source | Open Source Ruby on Rails <7.0.7.1 | |
| Cloudflare | access |
Timeline
- Aug 22, 2023 CVE Published
- Jan 9, 2025 EPSS Score
- Jan 25, 2025 EPSS Score
- Feb 9, 2025 EPSS Score
- Feb 15, 2025 CVE Updated
- Feb 25, 2025 EPSS Score
- Mar 13, 2025 EPSS Score
- Mar 28, 2025 EPSS Score
- Apr 13, 2025 EPSS Score
- Apr 29, 2025 EPSS Score
- May 15, 2025 EPSS Score
- May 30, 2025 EPSS Score
References
- https://wid.cert-bund.de/.well-known/csaf/white/2024/wid-sec-w-2024-0949.json advisory
- https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2024-0949 advisory
- https://access.redhat.com/errata/RHSA-2024:2010 advisory
- https://bodhi.fedoraproject.org/updates/FEDORA-2024-9e55564ca7 advisory
- https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2024-bc19d8cc99 advisory
- https://www.ibm.com/support/pages/node/7240431 advisory
- https://wid.cert-bund.de/.well-known/csaf/white/2023/wid-sec-w-2023-2116.json advisory
- https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2023-2116 advisory
- https://discuss.rubyonrails.org/t/cve-2023-38037-possible-file-disclosure-of-locally-encrypted-files/83544 advisory
- https://access.redhat.com/errata/RHSA-2023:7720 advisory
- https://access.redhat.com/errata/RHSA-2024:0268 advisory
- https://support.hcltechsw.com/csm?id=kb_article&sysparm_article=KB0115035 advisory
- https://lists.debian.org/debian-security-announce/2025/msg00043.html advisory
- https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/message/3C5WPU2RXUSPKAI3EANLIGCY34ZDBZ4Y/ advisory
- https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/message/HY4OG4XVEU3VJA7BHFONYS4OFAKMFV4J/ advisory
- https://lists.debian.org/debian-lts-announce/2025/11/msg00026.html advisory