In Ubuntu, gnome-control-center did not properly reflect SSH remote login status when the system was configured to use systemd socket activation for openssh-server. This could unknowingly leave the local machine exposed to remote SSH access contrary to expectation of the user.
This attack-focused weakness is caused by incorrectly implemented authentication schemes that are subject to spoofing attacks.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Gnome-control-center | Ubuntu | bionic | * |
Gnome-control-center | Ubuntu | devel | * |
Gnome-control-center | Ubuntu | focal | * |
Gnome-control-center | Ubuntu | jammy | * |
Gnome-control-center | Ubuntu | lunar | * |
Gnome-control-center | Ubuntu | mantic | * |
Gnome-control-center | Ubuntu | noble | * |
Gnome-control-center | Ubuntu | oracular | * |
Gnome-control-center | Ubuntu | trusty | * |
Gnome-control-center | Ubuntu | xenial | * |