Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Security Measurement
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Insights
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Insights
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2023:4383 - Security Advisory
Issued:
2023-08-01
Updated:
2023-08-01

RHSA-2023:4383 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Important: openssh security update

Type/Severity

Security Advisory: Important

Red Hat Insights patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for openssh is now available for Red Hat Enterprise Linux 8.1 Update Services for SAP Solutions.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

OpenSSH is an SSH protocol implementation supported by a number of Linux, UNIX, and similar operating systems. It includes the core files necessary for both the OpenSSH client and server.

Security Fix(es):

  • openssh: Remote code execution in ssh-agent PKCS#11 support (CVE-2023-38408)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

After installing this update, the OpenSSH server daemon (sshd) will be restarted automatically.

Affected Products

  • Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 8.1 ppc64le
  • Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 8.1 x86_64

Fixes

  • BZ - 2224173 - CVE-2023-38408 openssh: Remote code execution in ssh-agent PKCS#11 support

CVEs

  • CVE-2023-38408

References

  • https://access.redhat.com/security/updates/classification/#important
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 8.1

SRPM
openssh-8.0p1-5.el8_1.1.src.rpm SHA-256: fd88518a7e980df8773e5e2348cea718d6ac27ae94f21e76da2a48317ab3534e
ppc64le
openssh-8.0p1-5.el8_1.1.ppc64le.rpm SHA-256: eb095dd6cd8ba160a2e23f1087aec4d4fb6f92db747bdf2ac971272e6fa3fd60
openssh-askpass-8.0p1-5.el8_1.1.ppc64le.rpm SHA-256: 10eac37f31e0797745ef8058e4d445c858d129b72fd7318bb6a371da0eb57c40
openssh-askpass-debuginfo-8.0p1-5.el8_1.1.ppc64le.rpm SHA-256: 0a726b18936128b9c0ea552731804b78b45c7251bad1c2474dce1c378d62ba44
openssh-askpass-debuginfo-8.0p1-5.el8_1.1.ppc64le.rpm SHA-256: 0a726b18936128b9c0ea552731804b78b45c7251bad1c2474dce1c378d62ba44
openssh-cavs-8.0p1-5.el8_1.1.ppc64le.rpm SHA-256: 27f207a9dd75671c9d58e75f8bc3cd44f612f7e830131634423893a990842a94
openssh-cavs-debuginfo-8.0p1-5.el8_1.1.ppc64le.rpm SHA-256: cf67524be24e42dca9ebf4d48a21ce64f9dcb46956b222da97dffd794ca031eb
openssh-cavs-debuginfo-8.0p1-5.el8_1.1.ppc64le.rpm SHA-256: cf67524be24e42dca9ebf4d48a21ce64f9dcb46956b222da97dffd794ca031eb
openssh-clients-8.0p1-5.el8_1.1.ppc64le.rpm SHA-256: 5959ae7e18ca1860388d4e7720b41fdfcde4ebb8fa6dd762e1f8bf462a31c1ee
openssh-clients-debuginfo-8.0p1-5.el8_1.1.ppc64le.rpm SHA-256: 5888b623774f6472ac001c77625f5fddc43a36b7cd0e676282b7a3185d0d409f
openssh-clients-debuginfo-8.0p1-5.el8_1.1.ppc64le.rpm SHA-256: 5888b623774f6472ac001c77625f5fddc43a36b7cd0e676282b7a3185d0d409f
openssh-debuginfo-8.0p1-5.el8_1.1.ppc64le.rpm SHA-256: b913cc4c154631e8391183c1a590873deea51fa2781928d911fe91fd2b230dbb
openssh-debuginfo-8.0p1-5.el8_1.1.ppc64le.rpm SHA-256: b913cc4c154631e8391183c1a590873deea51fa2781928d911fe91fd2b230dbb
openssh-debugsource-8.0p1-5.el8_1.1.ppc64le.rpm SHA-256: d94cef098e553dd210df89cadfd5f61fb3b8a681d8188f6d7561331a6fa83ebb
openssh-debugsource-8.0p1-5.el8_1.1.ppc64le.rpm SHA-256: d94cef098e553dd210df89cadfd5f61fb3b8a681d8188f6d7561331a6fa83ebb
openssh-keycat-8.0p1-5.el8_1.1.ppc64le.rpm SHA-256: b1a672aaa9b88938d9ba0000d1a3dcb9d98755596929ca7ea0e5f490de6552d6
openssh-keycat-debuginfo-8.0p1-5.el8_1.1.ppc64le.rpm SHA-256: ae59765bdf1879a8cee3118bcb100f986115ef3672f3b1421235818b3ee0ff95
openssh-keycat-debuginfo-8.0p1-5.el8_1.1.ppc64le.rpm SHA-256: ae59765bdf1879a8cee3118bcb100f986115ef3672f3b1421235818b3ee0ff95
openssh-ldap-8.0p1-5.el8_1.1.ppc64le.rpm SHA-256: 6cc202ea058d1877b3b10acb817b02721634aff6a73cf53ae9eabfdca6804214
openssh-ldap-debuginfo-8.0p1-5.el8_1.1.ppc64le.rpm SHA-256: b31937774c6bae2b0c5974b918d2871de39ba44215641fbe56dda03f966cb207
openssh-ldap-debuginfo-8.0p1-5.el8_1.1.ppc64le.rpm SHA-256: b31937774c6bae2b0c5974b918d2871de39ba44215641fbe56dda03f966cb207
openssh-server-8.0p1-5.el8_1.1.ppc64le.rpm SHA-256: 7b47ef66d34f39e71c4067ea680c391b46760de9d89badd1ecfd5260d89230a9
openssh-server-debuginfo-8.0p1-5.el8_1.1.ppc64le.rpm SHA-256: 90b97f2255f33944045007196d920690531f952c2f232c1e25007b997b9a8a37
openssh-server-debuginfo-8.0p1-5.el8_1.1.ppc64le.rpm SHA-256: 90b97f2255f33944045007196d920690531f952c2f232c1e25007b997b9a8a37
pam_ssh_agent_auth-0.10.3-7.5.el8_1.ppc64le.rpm SHA-256: 246afc8a86d2d7683b188a69d972de30545b0cbe45e8487fc8b33cdbfb730fc0
pam_ssh_agent_auth-debuginfo-0.10.3-7.5.el8_1.ppc64le.rpm SHA-256: 0a926e6ef1dd2a94833344098c05304ad4eef3cfc73dc87fa76b87f42fe49f99
pam_ssh_agent_auth-debuginfo-0.10.3-7.5.el8_1.ppc64le.rpm SHA-256: 0a926e6ef1dd2a94833344098c05304ad4eef3cfc73dc87fa76b87f42fe49f99

Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 8.1

SRPM
openssh-8.0p1-5.el8_1.1.src.rpm SHA-256: fd88518a7e980df8773e5e2348cea718d6ac27ae94f21e76da2a48317ab3534e
x86_64
openssh-8.0p1-5.el8_1.1.x86_64.rpm SHA-256: 825f64975d0c2860fb7bf9878007dee6890896e3b03bebdf9a4c46e824dbde35
openssh-askpass-8.0p1-5.el8_1.1.x86_64.rpm SHA-256: c9e29b9aec19fdf32fa1ee9bc05f7d176b1caa5e9ea77a366aee1e931228ab0c
openssh-askpass-debuginfo-8.0p1-5.el8_1.1.x86_64.rpm SHA-256: d62797367bf44343a8f91bdb0d1e49dcb8c0165e5d7b13c2c5b2f29e58af5b75
openssh-askpass-debuginfo-8.0p1-5.el8_1.1.x86_64.rpm SHA-256: d62797367bf44343a8f91bdb0d1e49dcb8c0165e5d7b13c2c5b2f29e58af5b75
openssh-cavs-8.0p1-5.el8_1.1.x86_64.rpm SHA-256: 6d841a8703f0f6266b6b261786ba15305635768031b6b1362d5cb6f49f3ba3b7
openssh-cavs-debuginfo-8.0p1-5.el8_1.1.x86_64.rpm SHA-256: 269477ec34d7409ee07cd7bce4879f2234241b0b664f510367ff36a781d7deb6
openssh-cavs-debuginfo-8.0p1-5.el8_1.1.x86_64.rpm SHA-256: 269477ec34d7409ee07cd7bce4879f2234241b0b664f510367ff36a781d7deb6
openssh-clients-8.0p1-5.el8_1.1.x86_64.rpm SHA-256: 2a7784a744c96713c424d697fbeed7e066e87eac6f3e404d3f7da7cbb3146100
openssh-clients-debuginfo-8.0p1-5.el8_1.1.x86_64.rpm SHA-256: b798380f03c5ed0a33b7c556c6a6cacb3d19871e5ecf162485f82de4399d70ef
openssh-clients-debuginfo-8.0p1-5.el8_1.1.x86_64.rpm SHA-256: b798380f03c5ed0a33b7c556c6a6cacb3d19871e5ecf162485f82de4399d70ef
openssh-debuginfo-8.0p1-5.el8_1.1.x86_64.rpm SHA-256: 416707ca92303235cadc706be49cb8818ac3bcc63308c6935f8ab46086521ae4
openssh-debuginfo-8.0p1-5.el8_1.1.x86_64.rpm SHA-256: 416707ca92303235cadc706be49cb8818ac3bcc63308c6935f8ab46086521ae4
openssh-debugsource-8.0p1-5.el8_1.1.x86_64.rpm SHA-256: f98472d1e1a61eea2eb0d8b9d56800922872a75edcf92d46868c517a8a5a8935
openssh-debugsource-8.0p1-5.el8_1.1.x86_64.rpm SHA-256: f98472d1e1a61eea2eb0d8b9d56800922872a75edcf92d46868c517a8a5a8935
openssh-keycat-8.0p1-5.el8_1.1.x86_64.rpm SHA-256: daec09f5b8b3c9bb6b29551a71cfbe9f1e94917036274e112dd4348a0bea8be5
openssh-keycat-debuginfo-8.0p1-5.el8_1.1.x86_64.rpm SHA-256: 29cf0dd1ba370bdf2ce3f64842a3ef4d27f05ca9de084c0bcf52cb048f777854
openssh-keycat-debuginfo-8.0p1-5.el8_1.1.x86_64.rpm SHA-256: 29cf0dd1ba370bdf2ce3f64842a3ef4d27f05ca9de084c0bcf52cb048f777854
openssh-ldap-8.0p1-5.el8_1.1.x86_64.rpm SHA-256: 0924374f470cbddf0ff9866b243240a03e017815e024d544cca3f399a08ccff1
openssh-ldap-debuginfo-8.0p1-5.el8_1.1.x86_64.rpm SHA-256: c970bf76c017abd551b5e57e96f35cdd28d6a74cd24d45248658c3d313ed8e8c
openssh-ldap-debuginfo-8.0p1-5.el8_1.1.x86_64.rpm SHA-256: c970bf76c017abd551b5e57e96f35cdd28d6a74cd24d45248658c3d313ed8e8c
openssh-server-8.0p1-5.el8_1.1.x86_64.rpm SHA-256: 8143d8935509d9052b29f791aa3ce35acd80b165d59156cf1c7be394bff776b8
openssh-server-debuginfo-8.0p1-5.el8_1.1.x86_64.rpm SHA-256: 390b8f1e1ef3df559282fab4ddc09b676cfcfd2a3fc70ec258843bd1d291e695
openssh-server-debuginfo-8.0p1-5.el8_1.1.x86_64.rpm SHA-256: 390b8f1e1ef3df559282fab4ddc09b676cfcfd2a3fc70ec258843bd1d291e695
pam_ssh_agent_auth-0.10.3-7.5.el8_1.x86_64.rpm SHA-256: 01b8f603567e79b7a70a8d792c7ca31f3efce04b1fecad58431807dc0c9be51f
pam_ssh_agent_auth-debuginfo-0.10.3-7.5.el8_1.x86_64.rpm SHA-256: 1a14aebd7ab6b1167d57e6eb32ecfae6cf4105e2bb8eff62f496b7399caea2a9
pam_ssh_agent_auth-debuginfo-0.10.3-7.5.el8_1.x86_64.rpm SHA-256: 1a14aebd7ab6b1167d57e6eb32ecfae6cf4105e2bb8eff62f496b7399caea2a9

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility