VDB
RHSA-2025%3A0535
RHSA-2025%3A0535
PUBLISHED
CVSS 8.199999809265137 HIGH
A flaw was found in the x/crypto/ssh go library. Applications and libraries that misuse the ServerConfig.PublicKeyCallback callback may be susceptible to an authorization bypass. For example, an attacker may send public keys A and B and authenticate with A. PublicKeyCallback would be called only twice, first with A and then with B. A vulnerable application may then make authorization decisions based on key B, for which the attacker does not control the private key. The misuse of ServerConfig.PublicKeyCallback may cause an authorization bypass.
Risk Scores
CVSS 3.1
8.199999809265137
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:N
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Red Hat | registry.redhat.io/cert-manager/cert-manager-operator-rhel9@sha256:6060fe37af30baf972c0d6e6831c84c66fe5c7896b55ad0669c69a27a7905f4c_ppc64le as a component of cert-manager operator for Red Hat OpenShift 1.15 | * |
| Red Hat | registry.redhat.io/cert-manager/cert-manager-operator-rhel9@sha256:9bd140dec43638bbfb6878514e37c2f428b673d88c45c5bc6763aae701f338cd_s390x as a component of cert-manager operator for Red Hat OpenShift 1.15 | * |
| Red Hat | registry.redhat.io/cert-manager/cert-manager-operator-rhel9@sha256:57d8f4291874dd50be3775d987c1b16212845fd0bfb340bab21ddbd1e55d88b4_arm64 as a component of cert-manager operator for Red Hat OpenShift 1.15 | registry.redhat.io/cert-manager/cert-manager-operator-rhel9@sha256:57d8f4291874dd50be3775d987c1b16212845fd0bfb340bab21ddbd1e55d88b4_arm64 |
| Red Hat | registry.redhat.io/cert-manager/cert-manager-operator-rhel9@sha256:b31cc2ba5ac8c6f18ee392a2193f81b3e4f4648a70549f2f5ada1d3c2bca500d_amd64 as a component of cert-manager operator for Red Hat OpenShift 1.15 | *, registry.redhat.io/cert-manager/cert-manager-operator-rhel9@sha256:b31cc2ba5ac8c6f18ee392a2193f81b3e4f4648a70549f2f5ada1d3c2bca500d_amd64, * |
| Red Hat | registry.redhat.io/cert-manager/cert-manager-operator-rhel9@sha256:57d8f4291874dd50be3775d987c1b16212845fd0bfb340bab21ddbd1e55d88b4_arm64 as a component of cert-manager operator for Red Hat OpenShift 1.15 | *, *, * |
| Red Hat | registry.redhat.io/cert-manager/cert-manager-operator-rhel9@sha256:9bd140dec43638bbfb6878514e37c2f428b673d88c45c5bc6763aae701f338cd_s390x as a component of cert-manager operator for Red Hat OpenShift 1.15 | *, registry.redhat.io/cert-manager/cert-manager-operator-rhel9@sha256:9bd140dec43638bbfb6878514e37c2f428b673d88c45c5bc6763aae701f338cd_s390x, * |
| Red Hat | registry.redhat.io/cert-manager/cert-manager-operator-rhel9@sha256:6060fe37af30baf972c0d6e6831c84c66fe5c7896b55ad0669c69a27a7905f4c_ppc64le as a component of cert-manager operator for Red Hat OpenShift 1.15 | *, registry.redhat.io/cert-manager/cert-manager-operator-rhel9@sha256:6060fe37af30baf972c0d6e6831c84c66fe5c7896b55ad0669c69a27a7905f4c_ppc64le, * |
| golang | golang.org/x/crypto/ssh | |
| Red Hat | registry.redhat.io/cert-manager/cert-manager-operator-rhel9@sha256:b31cc2ba5ac8c6f18ee392a2193f81b3e4f4648a70549f2f5ada1d3c2bca500d_amd64 as a component of cert-manager operator for Red Hat OpenShift 1.15 | * |
Timeline
- Jan 21, 2025 CVE Published
- Apr 25, 2026 Distribution Patch
- May 1, 2026 Security Advisory
- May 15, 2026 Distribution Patch
- May 15, 2026 Security Advisory
- Jul 19, 2026 CVE Updated
- Jul 19, 2026 Security Advisory
References
- https://access.redhat.com/security/cve/CVE-2024-45338 advisory
- https://nvd.nist.gov/vuln/detail/CVE-2024-45337 advisory
- https://github.com/golang/crypto/commit/b4f1988a35dee11ec3e05d6bf3e90b695fbd8909 advisory
- https://issues.redhat.com/browse/OCPBUGS-23406 advisory
- https://issues.redhat.com/browse/CM-436 advisory
- https://security.access.redhat.com/data/csaf/v2/advisories/2025/rhsa-2025_0535.json advisory
- https://go.dev/issue/70779 advisory
- https://pkg.go.dev/vuln/GO-2024-3321 advisory
- https://www.cve.org/CVERecord?id=CVE-2024-45338 advisory
- https://access.redhat.com/errata/RHSA-2025:0535 advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2331720 issue
- https://www.cve.org/CVERecord?id=CVE-2024-45337 advisory
- https://groups.google.com/g/golang-announce/c/-nPEi39gI4Q/m/cGVPJCqdAQAJ advisory
- https://pkg.go.dev/vuln/GO-2024-3333 advisory
- https://docs.openshift.com/container-platform/latest/security/cert_manager_operator/index.html advisory
- https://issues.redhat.com/browse/CM-356 advisory
- https://access.redhat.com/security/cve/CVE-2024-45337 advisory
- https://go.dev/cl/635315 advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2333122 issue
- https://nvd.nist.gov/vuln/detail/CVE-2024-45338 advisory
…and 3 more