CVE-2023-5455
Summary
| CVE | CVE-2023-5455 |
|---|---|
| State | RESERVED |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2024-01-10 13:15:00 UTC |
| Updated | 2024-01-26 02:15:00 UTC |
| Description | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. |
Risk And Classification
Problem Types: CWE-352
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Red Hat | access.redhat.com | Third Party Advisory | |
| Red Hat | access.redhat.com | Third Party Advisory | |
| cve-details | access.redhat.com | Third Party Advisory | |
| Red Hat | access.redhat.com | Third Party Advisory | |
| Red Hat | access.redhat.com | Third Party Advisory | |
| [SECURITY] Fedora 39 Update: freeipa-4.11.1-1.fc39 - package-announce - Fedora Mailing-Lists | lists.fedoraproject.org | ||
| Red Hat | access.redhat.com | Third Party Advisory | |
| Red Hat | access.redhat.com | Third Party Advisory | |
| Red Hat | access.redhat.com | Third Party Advisory | |
| Red Hat | access.redhat.com | Third Party Advisory | |
| Red Hat | access.redhat.com | Third Party Advisory | |
| FreeIPA 4.9.14 — FreeIPA documentation | www.freeipa.org | Release Notes | |
| 2242828 – (CVE-2023-5455) CVE-2023-5455 ipa: Invalid CSRF protection | bugzilla.redhat.com | Issue Tracking, Third Party Advisory | |
| Red Hat | access.redhat.com | Third Party Advisory | |
| FreeIPA 4.11.1 — FreeIPA documentation | www.freeipa.org | Release Notes | |
| [SECURITY] Fedora 38 Update: freeipa-4.10.3-1.fc38 - package-announce - Fedora Mailing-Lists | lists.fedoraproject.org | ||
| FreeIPA 4.10.3 — FreeIPA documentation | www.freeipa.org | Release Notes | |
| FreeIPA 4.6.10 — FreeIPA documentation | www.freeipa.org | Release Notes | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 161273 Oracle Enterprise Linux Security Update for ipa (ELSA-2024-0145)
- 161275 Oracle Enterprise Linux Security Update for ipa (ELSA-2024-0141)
- 161288 Oracle Enterprise Linux Security Update for idm:dl1 (ELSA-2024-0143)
- 242679 Red Hat Update for idm:dl1 (RHSA-2024:0144)
- 242685 Red Hat Update for ipa (RHSA-2024:0141)
- 242692 Red Hat Update for idm:dl1 (RHSA-2024:0143)
- 242694 Red Hat Update for ipa (RHSA-2024:0142)
- 242699 Red Hat Update for krb5 (RHSA-2024:0252)
- 242878 Red Hat Update for ipa (RHSA-2024:0145)
- 257290 CentOS Security Update for ipa (CESA-2024:0145)
- 284885 Fedora Security Update for freeipa (FEDORA-2024-403145c4fb)
- 285050 Fedora Security Update for freeipa (FEDORA-2024-9ab2666594)
- 357231 Amazon Linux Security Advisory for ipa : ALAS2-2024-2457
- 379636 Alibaba Cloud Linux Security Update for idm:dl1 (ALINUX3-SA-2024:0022)
- 941521 AlmaLinux Security Update for ipa (ALSA-2024:0141)
- 941538 AlmaLinux Security Update for idm:DL1 (ALSA-2024:0143)
- 961104 Rocky Linux Security Update for idm:DL1 (RLSA-2024:0143)