{"api_version":"1","generated_at":"2026-07-23T12:20:07+00:00","cve":"CVE-2022-24950","urls":{"html":"https://cve.report/CVE-2022-24950","api":"https://cve.report/api/cve/CVE-2022-24950.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2022-24950","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2022-24950"},"summary":{"title":"CVE-2022-24950","description":"A race condition exists in Eternal Terminal prior to version 6.2.0 that allows an authenticated attacker to hijack other users' SSH authorization socket, enabling the attacker to login to other systems as the targeted users. The bug is in UserTerminalRouter::getInfoForId().","state":"PUBLIC","assigner":"cve-assign@fb.com","published_at":"2022-08-16 01:15:00","updated_at":"2023-02-16 19:15:00"},"problem_types":["CWE-362"],"metrics":[],"references":[{"url":"https://github.com/metaredteam/external-disclosures/security/advisories/GHSA-85gw-pchc-4rf3","name":"https://github.com/metaredteam/external-disclosures/security/advisories/GHSA-85gw-pchc-4rf3","refsource":"MISC","tags":[],"title":"Eternal Terminal SSH Authorization Socket Hijacking · Advisory · metaredteam/external-disclosures · GitHub","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://github.com/MisterTea/EternalTerminal/commit/900348bb8bc96e1c7ba4888ac8480f643c43d3c3","name":"https://github.com/MisterTea/EternalTerminal/commit/900348bb8bc96e1c7ba4888ac8480f643c43d3c3","refsource":"CONFIRM","tags":[],"title":"red fixes (#468) · MisterTea/EternalTerminal@900348b · GitHub","mime":"text/html","httpstatus":"200","archivestatus":"404"},{"url":"http://www.openwall.com/lists/oss-security/2023/02/16/1","name":"[oss-security] 20230216 EternalTerminal: Review report and findings (predictable /tmp file paths and file permission issues, 3 CVEs)","refsource":"MLIST","tags":[],"title":"oss-security - EternalTerminal: Review report and findings (predictable /tmp file\n paths and file permission issues, 3 CVEs)","mime":"text/html","httpstatus":"200","archivestatus":"404"},{"url":"https://www.cve.org/CVERecord?id=CVE-2022-24950","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2022-24950","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2022","cve_id":"24950","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"eternal_terminal_project","cpe5":"eternal_terminal","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"CVE_data_meta":{"ASSIGNER":"cve-assign@fb.com","DATE_ASSIGNED":"2022-02-10","ID":"CVE-2022-24950","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"vendor_name":"Jason Gauci","product":{"product_data":[{"product_name":"Eternal Terminal","version":{"version_data":[{"version_affected":"<","version_value":"6.2.0"}]}}]}}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"A race condition exists in Eternal Terminal prior to version 6.2.0 that allows an authenticated attacker to hijack other users' SSH authorization socket, enabling the attacker to login to other systems as the targeted users. The bug is in UserTerminalRouter::getInfoForId()."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"Race Condition (CWE-362)"}]}]},"references":{"reference_data":[{"refsource":"CONFIRM","name":"https://github.com/MisterTea/EternalTerminal/commit/900348bb8bc96e1c7ba4888ac8480f643c43d3c3","url":"https://github.com/MisterTea/EternalTerminal/commit/900348bb8bc96e1c7ba4888ac8480f643c43d3c3"},{"refsource":"MISC","name":"https://github.com/metaredteam/external-disclosures/security/advisories/GHSA-85gw-pchc-4rf3","url":"https://github.com/metaredteam/external-disclosures/security/advisories/GHSA-85gw-pchc-4rf3"},{"refsource":"MLIST","name":"[oss-security] 20230216 EternalTerminal: Review report and findings (predictable /tmp file paths and file permission issues, 3 CVEs)","url":"http://www.openwall.com/lists/oss-security/2023/02/16/1"}]}},"nvd":{"publishedDate":"2022-08-16 01:15:00","lastModifiedDate":"2023-02-16 19:15:00","problem_types":["CWE-362"],"metrics":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H","attackVector":"NETWORK","attackComplexity":"HIGH","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH","baseScore":7.5,"baseSeverity":"HIGH"},"exploitabilityScore":1.6,"impactScore":5.9}},"configurations":{"CVE_data_version":"4.0","nodes":[{"operator":"OR","children":[],"cpe_match":[{"vulnerable":true,"cpe23Uri":"cpe:2.3:a:eternal_terminal_project:eternal_terminal:*:*:*:*:*:*:*:*","versionEndExcluding":"6.2.0","cpe_name":[]}]}]}},"legacy_mitre":{"record":{"CveYear":"2022","CveId":"24950","Ordinal":"228372","Title":"CVE-2022-24950","CVE":"CVE-2022-24950","Year":"2022"},"notes":[{"CveYear":"2022","CveId":"24950","Ordinal":"1","NoteData":"** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.","Type":"Description","Title":null}]}}}