In Ubuntu, gnome-control-center did not properly reflect SSH remote login status when the system was configured to use systemd socket activation for openssh-server. This could unknowingly leave the local machine exposed to remote SSH access contrary to expectation of the user.
References
| Link | Resource |
|---|---|
| https://bugs.launchpad.net/ubuntu/+source/gnome-control-center/+bug/2039577 | Exploit Issue Tracking |
| https://ubuntu.com/security/CVE-2023-5616 | Vendor Advisory |
| https://ubuntu.com/security/notices/USN-6554-1 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
History
No history.
Information
Published : 2025-04-15 19:16
Updated : 2025-08-26 16:34
NVD link : CVE-2023-5616
Mitre link : CVE-2023-5616
CVE.ORG link : CVE-2023-5616
JSON object : View
Products Affected
canonical
- ubuntu_linux
gnome
- control_center
CWE
CWE-290
Authentication Bypass by Spoofing
