cbcvebase.
CVE-2023-5616
published 2025-04-15

CVE-2023-5616: In Ubuntu, gnome-control-center did not properly reflect SSH remote login status when the system was configured to use systemd socket activation for…

PriorityP423medium4.9CVSS 3.1
AVLACHPRNUINSUCLILAL
EPSS
0.22%
12.8th percentile
In Ubuntu, gnome-control-center did not properly reflect SSH remote login status when the system was configured to use systemd socket activation for openssh-server. This could unknowingly leave the local machine exposed to remote SSH access contrary to expectation of the user.

Affected

13 ranges
VendorProductVersion rangeFixed in
canonicalubuntu_linux
canonicalubuntu_linux
canonicalubuntu_linux
canonicalubuntu_linux
canonical_ltdubuntu_s_gnome-control-center>= 1:3 < 1:3.36.5-0ubuntu4.11:3.36.5-0ubuntu4.1
canonical_ltdubuntu_s_gnome-control-center>= 1:41 < 1:41.7-0ubuntu0.22.04.81:41.7-0ubuntu0.22.04.8
canonical_ltdubuntu_s_gnome-control-center>= 1:44 < 1:44.0-1ubuntu6.11:44.0-1ubuntu6.1
canonical_ltdubuntu_s_gnome-control-center>= 1:45 < 1:45.0-1ubuntu3.11:45.0-1ubuntu3.1
debiangnome-control-center
gnomecontrol_center>= 1.3 < 1.3.36.5-0ubuntu4.11.3.36.5-0ubuntu4.1
gnomecontrol_center>= 1.41 < 1.41.7-0ubuntu0.22.04.81.41.7-0ubuntu0.22.04.8
gnomecontrol_center>= 1.44 < 1.44.0-1ubuntu6.11.44.0-1ubuntu6.1
gnomecontrol_center>= 1.45 < 1.45.0-1ubuntu3.11.45.0-1ubuntu3.1

CVSS provenance

nvdv3.14.9MEDIUMCVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:L
osv4.9MEDIUM
vendor_debian4.9MEDIUM
vendor_redhat4.9MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.