Cyber Resilience

CVE-2023-51767

Redhat Enterprise Linux 8.0 … 9.0

Published
24 December 2023
Modified
02 June 2026
Patch / advisory
CVSS Score v3.1 7.0
Click a component to see what it means
Raw vectorCVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS Score 0.0066 48th percentile
Risk Priority 52 floored blend · peak EPSS

Summary

CVE-2023-51767 is a high-severity an unspecified weakness vulnerability in Redhat Enterprise Linux. Its CVSS base score is 7.0 (High).

Operationally, ranked at the 48th percentile by exploit likelihood (below the median); it is not currently listed in the CISA KEV catalog.

EU & UK References

Vulnerability Data

OpenSSH through 10.0, when common types of DRAM are used, might allow row hammer attacks (for authentication bypass) because the integer value of authenticated in mm_answer_authpassword does not resist flips of a single bit. NOTE: this is applicable to a…

more

certain threat model of attacker-victim co-location in which the attacker has user privileges. NOTE: this is disputed by the Supplier, who states "we do not consider it to be the application's responsibility to defend against platform architectural weaknesses."

CWE(s)

Related Threats

CVEs Like This One

CVE-2023-38408Same product: Fedoraproject Fedora
CVE-2023-40549Same product: Fedoraproject Fedora
CVE-2023-2700Same product: Fedoraproject Fedora
CVE-2023-40550Same product: Fedoraproject Fedora
CVE-2023-40551Same product: Fedoraproject Fedora
CVE-2023-40546Same product: Fedoraproject Fedora
CVE-2026-55654Same product: Openbsd Openssh
CVE-2026-55653Same product: Openbsd Openssh
CVE-2023-3576Same product: Fedoraproject Fedora
CVE-2023-1729Same product: Fedoraproject Fedora

Affected Assets

openbsd
openssh
all versions
fedoraproject
fedora
39
redhat
enterprise linux
8.0, 9.0

Mitigating Controls

No mitigating controls mapped yet. The per-CVE control annotator has not reached this CVE.

References