CVE-2023-2585
Last modified
CVE-2023-2585 is a high-severity vulnerability rated 8.1/10 on the CVSS scale. Keycloak's device authorization grant does not correctly validate the device code and client ID. An attacker client could abuse the missing validation to spoof a client consent request and trick an authorization admin into granting consent to a malicious OAuth client or possible unauthorized access to an existing OAuth client.. EPSS estimates a 0.59% chance of exploitation in the next 30 days.
Description
Keycloak's device authorization grant does not correctly validate the device code and client ID. An attacker client could abuse the missing validation to spoof a client consent request and trick an authorization admin into granting consent to a malicious OAuth client or possible unauthorized access to an existing OAuth client.
Metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Redhat | Single Sign-On | 7.6 |
| Redhat | Openshift Container Platform | 4.11 |
| Redhat | Openshift Container Platform | 4.12 |
| Redhat | Openshift Container Platform For Ibm Z | 4.9 |
| Redhat | Openshift Container Platform For Ibm Z | 4.10 |
| Redhat | Openshift Container Platform For Linuxone | 4.9 |
| Redhat | Openshift Container Platform For Linuxone | 4.10 |
| Redhat | Openshift Container Platform For Power | 4.9 |
| Redhat | Openshift Container Platform For Power | 4.10 |
| Redhat | Single Sign-On | All versions |
References
- https://access.redhat.com/errata/RHSA-2023:3883Vendor Advisory
- https://access.redhat.com/errata/RHSA-2023:3884Vendor Advisory
- https://access.redhat.com/errata/RHSA-2023:3885Vendor Advisory
- https://access.redhat.com/errata/RHSA-2023:3888Vendor Advisory
- https://access.redhat.com/errata/RHSA-2023:3892Vendor Advisory
- https://access.redhat.com/security/cve/CVE-2023-2585Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2196335Issue Tracking, Vendor Advisory
- https://access.redhat.com/errata/RHSA-2023:3883Vendor Advisory
- https://access.redhat.com/errata/RHSA-2023:3884Vendor Advisory
- https://access.redhat.com/errata/RHSA-2023:3885Vendor Advisory
- https://access.redhat.com/errata/RHSA-2023:3888Vendor Advisory
- https://access.redhat.com/errata/RHSA-2023:3892Vendor Advisory
- https://access.redhat.com/security/cve/CVE-2023-2585Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2196335Issue Tracking, Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2023-2585?
How severe is CVE-2023-2585?
How do I fix CVE-2023-2585?
Are you affected by CVE-2023-2585?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
