Is Security Analytics vulnerable to CVE-2023-51385
search cancel

Is Security Analytics vulnerable to CVE-2023-51385

book

Article ID: 403494

calendar_today

Updated On:

Products

Security Analytics

Issue/Introduction

The security team wants to know if Security Analytics is vulnerable to CVE-2023-51385

Environment

SA 8.3.1

Resolution

This is a client-side issue involving the use of ProxyCommand, LocalCommand, or Match exec directives in SSH configuration. These features are not used by Security Analytics. The relevant settings in /etc/ssh/ssh_config are not configured in a way that would make the system vulnerable.