VYPR
Medium severity5.5NVD Advisory· Published Dec 18, 2023· Updated Jul 14, 2026

CVE-2023-51384

CVE-2023-51384

Description

In ssh-agent in OpenSSH before 9.6, certain destination constraints can be incompletely applied. When destination constraints are specified during addition of PKCS#11-hosted private keys, these constraints are only applied to the first key, even if a PKCS#11 token returns multiple keys.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

6
  • cpe:2.3:a:openbsd:openssh:*:*:*:*:*:*:*:*
    Range: >=8.9,<9.6
  • Debian/linux2 versions
    cpe:2.3:o:debian:debian_linux:11.0:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:debian:debian_linux:11.0:*:*:*:*:*:*:*
    • cpe:2.3:o:debian:debian_linux:12.0:*:*:*:*:*:*:*
  • OpenSSH/OpenSSHdescription
  • OpenSSH/OpenSSHllm-fuzzy
    Range: <9.6
  • Range: <9.6

Patches

Vulnerability mechanics

References

11

News mentions

1