CVE-2023-46322 (GCVE-0-2023-46322)
Vulnerability from cvelistv5
Published
2023-10-22 00:00
Modified
2024-09-11 20:28
Severity ?
VLAI Severity ?
EPSS score ?
CWE
- n/a
Summary
iTermSessionLauncher.m in iTerm2 before 3.5.0beta12 does not sanitize ssh hostnames in URLs. The hostname's initial character may be non-alphanumeric. The hostname's other characters may be outside the set of alphanumeric characters, dash, and period.
References
► | URL | Tags | |
---|---|---|---|
|
{ "containers": { "adp": [ { "providerMetadata": { "dateUpdated": "2024-08-02T20:45:41.273Z", "orgId": "af854a3a-2127-422b-91ae-364da2661108", "shortName": "CVE" }, "references": [ { "tags": [ "x_transferred" ], "url": "https://iterm2.com/downloads.html" }, { "tags": [ "x_transferred" ], "url": "https://gitlab.com/gnachman/iterm2/-/commit/ef7bb84520013b2524df9787d4aa9f2c96746c01" } ], "title": "CVE Program Container" }, { "affected": [ { "cpes": [ "cpe:2.3:a:iterm2:iterm2:*:*:*:*:*:*:*:*" ], "defaultStatus": "unknown", "product": "iterm2", "vendor": "iterm2", "versions": [ { "lessThan": "3.5", "status": "affected", "version": "0", "versionType": "custom" } ] } ], "metrics": [ { "other": { "content": { "id": "CVE-2023-46322", "options": [ { "Exploitation": "none" }, { "Automatable": "yes" }, { "Technical Impact": "total" } ], "role": "CISA Coordinator", "timestamp": "2024-09-11T20:14:29.861746Z", "version": "2.0.3" }, "type": "ssvc" } } ], "problemTypes": [ { "descriptions": [ { "cweId": "CWE-117", "description": "CWE-117 Improper Output Neutralization for Logs", "lang": "en", "type": "CWE" } ] } ], "providerMetadata": { "dateUpdated": "2024-09-11T20:28:05.384Z", "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0", "shortName": "CISA-ADP" }, "title": "CISA ADP Vulnrichment" } ], "cna": { "affected": [ { "product": "n/a", "vendor": "n/a", "versions": [ { "status": "affected", "version": "n/a" } ] } ], "descriptions": [ { "lang": "en", "value": "iTermSessionLauncher.m in iTerm2 before 3.5.0beta12 does not sanitize ssh hostnames in URLs. The hostname\u0027s initial character may be non-alphanumeric. The hostname\u0027s other characters may be outside the set of alphanumeric characters, dash, and period." } ], "problemTypes": [ { "descriptions": [ { "description": "n/a", "lang": "en", "type": "text" } ] } ], "providerMetadata": { "dateUpdated": "2023-10-22T23:53:11.890070", "orgId": "8254265b-2729-46b6-b9e3-3dfca2d5bfca", "shortName": "mitre" }, "references": [ { "url": "https://iterm2.com/downloads.html" }, { "url": "https://gitlab.com/gnachman/iterm2/-/commit/ef7bb84520013b2524df9787d4aa9f2c96746c01" } ] } }, "cveMetadata": { "assignerOrgId": "8254265b-2729-46b6-b9e3-3dfca2d5bfca", "assignerShortName": "mitre", "cveId": "CVE-2023-46322", "datePublished": "2023-10-22T00:00:00", "dateReserved": "2023-10-22T00:00:00", "dateUpdated": "2024-09-11T20:28:05.384Z", "state": "PUBLISHED" }, "dataType": "CVE_RECORD", "dataVersion": "5.1", "vulnerability-lookup:meta": { "nvd": "{\"cve\":{\"id\":\"CVE-2023-46322\",\"sourceIdentifier\":\"cve@mitre.org\",\"published\":\"2023-10-23T00:15:08.560\",\"lastModified\":\"2024-11-21T08:28:18.157\",\"vulnStatus\":\"Modified\",\"cveTags\":[],\"descriptions\":[{\"lang\":\"en\",\"value\":\"iTermSessionLauncher.m in iTerm2 before 3.5.0beta12 does not sanitize ssh hostnames in URLs. The hostname\u0027s initial character may be non-alphanumeric. The hostname\u0027s other characters may be outside the set of alphanumeric characters, dash, and period.\"},{\"lang\":\"es\",\"value\":\"iTermSessionLauncher.m en iTerm2 anterior a 3.5.0beta12 no sanitiza los nombres de host ssh en las URL. El car\u00e1cter inicial del nombre de host puede no ser alfanum\u00e9rico. Los dem\u00e1s caracteres del nombre de host pueden estar fuera del conjunto de caracteres alfanum\u00e9ricos, guiones y puntos.\"}],\"metrics\":{\"cvssMetricV31\":[{\"source\":\"nvd@nist.gov\",\"type\":\"Primary\",\"cvssData\":{\"version\":\"3.1\",\"vectorString\":\"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H\",\"baseScore\":9.8,\"baseSeverity\":\"CRITICAL\",\"attackVector\":\"NETWORK\",\"attackComplexity\":\"LOW\",\"privilegesRequired\":\"NONE\",\"userInteraction\":\"NONE\",\"scope\":\"UNCHANGED\",\"confidentialityImpact\":\"HIGH\",\"integrityImpact\":\"HIGH\",\"availabilityImpact\":\"HIGH\"},\"exploitabilityScore\":3.9,\"impactScore\":5.9}]},\"weaknesses\":[{\"source\":\"nvd@nist.gov\",\"type\":\"Primary\",\"description\":[{\"lang\":\"en\",\"value\":\"NVD-CWE-noinfo\"}]},{\"source\":\"134c704f-9b21-4f2e-91b3-4a467353bcc0\",\"type\":\"Secondary\",\"description\":[{\"lang\":\"en\",\"value\":\"CWE-117\"}]}],\"configurations\":[{\"nodes\":[{\"operator\":\"OR\",\"negate\":false,\"cpeMatch\":[{\"vulnerable\":true,\"criteria\":\"cpe:2.3:a:iterm2:iterm2:*:*:*:*:*:*:*:*\",\"versionEndIncluding\":\"3.4.21\",\"matchCriteriaId\":\"2DCBDFA5-07B5-4D12-95A7-EE26C15F0CCE\"},{\"vulnerable\":true,\"criteria\":\"cpe:2.3:a:iterm2:iterm2:3.5.0:beta1:*:*:*:*:*:*\",\"matchCriteriaId\":\"37F1A1C2-AA8A-45A2-BCC7-36289E434567\"},{\"vulnerable\":true,\"criteria\":\"cpe:2.3:a:iterm2:iterm2:3.5.0:beta10:*:*:*:*:*:*\",\"matchCriteriaId\":\"A632C6D5-2180-4B02-B8F1-EBE4442C1BE6\"},{\"vulnerable\":true,\"criteria\":\"cpe:2.3:a:iterm2:iterm2:3.5.0:beta2:*:*:*:*:*:*\",\"matchCriteriaId\":\"8A35ECC8-B179-449F-97D7-47017B89E269\"},{\"vulnerable\":true,\"criteria\":\"cpe:2.3:a:iterm2:iterm2:3.5.0:beta3:*:*:*:*:*:*\",\"matchCriteriaId\":\"E238E921-DEC6-470E-94C3-9ACFCAE47C95\"},{\"vulnerable\":true,\"criteria\":\"cpe:2.3:a:iterm2:iterm2:3.5.0:beta4:*:*:*:*:*:*\",\"matchCriteriaId\":\"13D2A7C5-650D-456D-97E0-79D146657A43\"},{\"vulnerable\":true,\"criteria\":\"cpe:2.3:a:iterm2:iterm2:3.5.0:beta5:*:*:*:*:*:*\",\"matchCriteriaId\":\"E67A594B-4ECA-4189-9C3A-08AF188F82DF\"},{\"vulnerable\":true,\"criteria\":\"cpe:2.3:a:iterm2:iterm2:3.5.0:beta6:*:*:*:*:*:*\",\"matchCriteriaId\":\"62D4145E-8CAA-439D-B917-BE332800EEC9\"},{\"vulnerable\":true,\"criteria\":\"cpe:2.3:a:iterm2:iterm2:3.5.0:beta7:*:*:*:*:*:*\",\"matchCriteriaId\":\"5622F6B3-ECFC-44D7-AD72-1EBE28E8889D\"},{\"vulnerable\":true,\"criteria\":\"cpe:2.3:a:iterm2:iterm2:3.5.0:beta8:*:*:*:*:*:*\",\"matchCriteriaId\":\"E81D1628-8B0A-4DC8-B176-6A2827D91F80\"},{\"vulnerable\":true,\"criteria\":\"cpe:2.3:a:iterm2:iterm2:3.5.0:beta9:*:*:*:*:*:*\",\"matchCriteriaId\":\"6AC4F001-2578-46FE-996F-82DCB5DF3511\"}]}]}],\"references\":[{\"url\":\"https://gitlab.com/gnachman/iterm2/-/commit/ef7bb84520013b2524df9787d4aa9f2c96746c01\",\"source\":\"cve@mitre.org\",\"tags\":[\"Third Party Advisory\"]},{\"url\":\"https://iterm2.com/downloads.html\",\"source\":\"cve@mitre.org\",\"tags\":[\"Vendor Advisory\"]},{\"url\":\"https://gitlab.com/gnachman/iterm2/-/commit/ef7bb84520013b2524df9787d4aa9f2c96746c01\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\",\"tags\":[\"Third Party Advisory\"]},{\"url\":\"https://iterm2.com/downloads.html\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\",\"tags\":[\"Vendor Advisory\"]}]}}", "vulnrichment": { "containers": "{\"adp\": [{\"title\": \"CVE Program Container\", \"references\": [{\"url\": \"https://iterm2.com/downloads.html\", \"tags\": [\"x_transferred\"]}, {\"url\": \"https://gitlab.com/gnachman/iterm2/-/commit/ef7bb84520013b2524df9787d4aa9f2c96746c01\", \"tags\": [\"x_transferred\"]}], \"providerMetadata\": {\"orgId\": \"af854a3a-2127-422b-91ae-364da2661108\", \"shortName\": \"CVE\", \"dateUpdated\": \"2024-08-02T20:45:41.273Z\"}}, {\"title\": \"CISA ADP Vulnrichment\", \"metrics\": [{\"other\": {\"type\": \"ssvc\", \"content\": {\"id\": \"CVE-2023-46322\", \"role\": \"CISA Coordinator\", \"options\": [{\"Exploitation\": \"none\"}, {\"Automatable\": \"yes\"}, {\"Technical Impact\": \"total\"}], \"version\": \"2.0.3\", \"timestamp\": \"2024-09-11T20:14:29.861746Z\"}}}], \"affected\": [{\"cpes\": [\"cpe:2.3:a:iterm2:iterm2:*:*:*:*:*:*:*:*\"], \"vendor\": \"iterm2\", \"product\": \"iterm2\", \"versions\": [{\"status\": \"affected\", \"version\": \"0\", \"lessThan\": \"3.5\", \"versionType\": \"custom\"}], \"defaultStatus\": \"unknown\"}], \"problemTypes\": [{\"descriptions\": [{\"lang\": \"en\", \"type\": \"CWE\", \"cweId\": \"CWE-117\", \"description\": \"CWE-117 Improper Output Neutralization for Logs\"}]}], \"providerMetadata\": {\"orgId\": \"134c704f-9b21-4f2e-91b3-4a467353bcc0\", \"shortName\": \"CISA-ADP\", \"dateUpdated\": \"2024-09-11T20:19:24.666Z\"}}], \"cna\": {\"affected\": [{\"vendor\": \"n/a\", \"product\": \"n/a\", \"versions\": [{\"status\": \"affected\", \"version\": \"n/a\"}]}], \"references\": [{\"url\": \"https://iterm2.com/downloads.html\"}, {\"url\": \"https://gitlab.com/gnachman/iterm2/-/commit/ef7bb84520013b2524df9787d4aa9f2c96746c01\"}], \"descriptions\": [{\"lang\": \"en\", \"value\": \"iTermSessionLauncher.m in iTerm2 before 3.5.0beta12 does not sanitize ssh hostnames in URLs. The hostname\u0027s initial character may be non-alphanumeric. The hostname\u0027s other characters may be outside the set of alphanumeric characters, dash, and period.\"}], \"problemTypes\": [{\"descriptions\": [{\"lang\": \"en\", \"type\": \"text\", \"description\": \"n/a\"}]}], \"providerMetadata\": {\"orgId\": \"8254265b-2729-46b6-b9e3-3dfca2d5bfca\", \"shortName\": \"mitre\", \"dateUpdated\": \"2023-10-22T23:53:11.890070\"}}}", "cveMetadata": "{\"cveId\": \"CVE-2023-46322\", \"state\": \"PUBLISHED\", \"dateUpdated\": \"2024-09-11T20:28:05.384Z\", \"dateReserved\": \"2023-10-22T00:00:00\", \"assignerOrgId\": \"8254265b-2729-46b6-b9e3-3dfca2d5bfca\", \"datePublished\": \"2023-10-22T00:00:00\", \"assignerShortName\": \"mitre\"}", "dataType": "CVE_RECORD", "dataVersion": "5.1" } } }
Loading…
Loading…
Sightings
Author | Source | Type | Date |
---|
Nomenclature
- Seen: The vulnerability was mentioned, discussed, or seen somewhere by the user.
- Confirmed: The vulnerability is confirmed from an analyst perspective.
- Exploited: This vulnerability was exploited and seen by the user reporting the sighting.
- Patched: This vulnerability was successfully patched by the user reporting the sighting.
- Not exploited: This vulnerability was not exploited or seen by the user reporting the sighting.
- Not confirmed: The user expresses doubt about the veracity of the vulnerability.
- Not patched: This vulnerability was not successfully patched by the user reporting the sighting.
Loading…
Loading…