<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic ISE: CVE-2023-28531: Vulnerabilities in openssh 8.0p1 in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/ise-cve-2023-28531-vulnerabilities-in-openssh-8-0p1/m-p/5194904#M591838</link>
    <description>&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;Do you know what the exact impact of this vulnerability is on an ISE SNS-3655-K9 in version 3.3 P3?&lt;/P&gt;
&lt;P&gt;BR,&lt;/P&gt;
&lt;P&gt;José&lt;/P&gt;</description>
    <pubDate>Mon, 16 Sep 2024 15:51:03 GMT</pubDate>
    <dc:creator>jds5</dc:creator>
    <dc:date>2024-09-16T15:51:03Z</dc:date>
    <item>
      <title>ISE: CVE-2023-28531: Vulnerabilities in openssh 8.0p1</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-cve-2023-28531-vulnerabilities-in-openssh-8-0p1/m-p/5194904#M591838</link>
      <description>&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;Do you know what the exact impact of this vulnerability is on an ISE SNS-3655-K9 in version 3.3 P3?&lt;/P&gt;
&lt;P&gt;BR,&lt;/P&gt;
&lt;P&gt;José&lt;/P&gt;</description>
      <pubDate>Mon, 16 Sep 2024 15:51:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-cve-2023-28531-vulnerabilities-in-openssh-8-0p1/m-p/5194904#M591838</guid>
      <dc:creator>jds5</dc:creator>
      <dc:date>2024-09-16T15:51:03Z</dc:date>
    </item>
    <item>
      <title>Re: ISE: CVE-2023-28531: Vulnerabilities in openssh 8.0p1</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-cve-2023-28531-vulnerabilities-in-openssh-8-0p1/m-p/5194925#M591839</link>
      <description>&lt;P&gt;It's a discovered vulnerability on the Linux based OS which ISE uses as well and it could cause a leakage of some sensitive information or denial of service as per this NetApp link provided by nist.gov:&lt;/P&gt;
&lt;P&gt;&lt;A href="https://security.netapp.com/advisory/ntap-20230413-0008/" target="_blank"&gt;CVE-2023-28531 OpenSSH Vulnerability in NetApp Products | NetApp Product Security&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://nvd.nist.gov/vuln/detail/CVE-2023-28531" target="_blank"&gt;NVD - CVE-2023-28531 (nist.gov)&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 16 Sep 2024 16:40:12 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-cve-2023-28531-vulnerabilities-in-openssh-8-0p1/m-p/5194925#M591839</guid>
      <dc:creator>Aref Alsouqi</dc:creator>
      <dc:date>2024-09-16T16:40:12Z</dc:date>
    </item>
    <item>
      <title>Re: ISE: CVE-2023-28531: Vulnerabilities in openssh 8.0p1</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-cve-2023-28531-vulnerabilities-in-openssh-8-0p1/m-p/5195147#M591842</link>
      <description>&lt;P&gt;Does version 3.4 fix this vulnerability?&lt;/P&gt;</description>
      <pubDate>Tue, 17 Sep 2024 07:00:01 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-cve-2023-28531-vulnerabilities-in-openssh-8-0p1/m-p/5195147#M591842</guid>
      <dc:creator>jds5</dc:creator>
      <dc:date>2024-09-17T07:00:01Z</dc:date>
    </item>
    <item>
      <title>Re: ISE: CVE-2023-28531: Vulnerabilities in openssh 8.0p1</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-cve-2023-28531-vulnerabilities-in-openssh-8-0p1/m-p/5195728#M591868</link>
      <description>&lt;P&gt;Hello,&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Does someone have this information? Thank you,&lt;/P&gt;
&lt;P&gt;BR,&lt;/P&gt;</description>
      <pubDate>Wed, 18 Sep 2024 09:40:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-cve-2023-28531-vulnerabilities-in-openssh-8-0p1/m-p/5195728#M591868</guid>
      <dc:creator>jds5</dc:creator>
      <dc:date>2024-09-18T09:40:00Z</dc:date>
    </item>
    <item>
      <title>Re: ISE: CVE-2023-28531: Vulnerabilities in openssh 8.0p1</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-cve-2023-28531-vulnerabilities-in-openssh-8-0p1/m-p/5198025#M591942</link>
      <description>&lt;P&gt;Looking at the resolved bugs list in ISE 3.4 it does not seem to include it:&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/td/docs/security/ise/3-4/release_notes/b_ise_34_RN.html#concept_wzr_cz3_dcc" target="_blank"&gt;Release Notes for Cisco Identity Services Engine, Release 3.4 - Cisco&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 24 Sep 2024 09:39:50 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-cve-2023-28531-vulnerabilities-in-openssh-8-0p1/m-p/5198025#M591942</guid>
      <dc:creator>Aref Alsouqi</dc:creator>
      <dc:date>2024-09-24T09:39:50Z</dc:date>
    </item>
    <item>
      <title>Re: ISE: CVE-2023-28531: Vulnerabilities in openssh 8.0p1</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-cve-2023-28531-vulnerabilities-in-openssh-8-0p1/m-p/5203476#M592181</link>
      <description>&lt;P&gt;I would be nice if this was included in P4 coming sometime this month (which fixes&amp;nbsp;&lt;SPAN&gt;CVE-2024-20469).&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 04 Oct 2024 14:15:42 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-cve-2023-28531-vulnerabilities-in-openssh-8-0p1/m-p/5203476#M592181</guid>
      <dc:creator>Kyle Stewart</dc:creator>
      <dc:date>2024-10-04T14:15:42Z</dc:date>
    </item>
    <item>
      <title>Re: ISE: CVE-2023-28531: Vulnerabilities in openssh 8.0p1</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-cve-2023-28531-vulnerabilities-in-openssh-8-0p1/m-p/5204573#M592255</link>
      <description>&lt;P&gt;Look here. This doesn't affect ISE at all. Change the criteria to Not Affected and you'll see that confirmation. I'm sure this has to do with using customized versions of OpenSSH but vulnerability scanners only look at the version # (at least some of them).&lt;/P&gt;&lt;P&gt;&lt;A href="https://sec.cloudapps.cisco.com/security/center/cvr?cveIdList=CVE-2023-28531#~cve" target="_blank" rel="noopener"&gt;https://sec.cloudapps.cisco.com/security/center/cvr?cveIdList=CVE-2023-28531#~cve&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 07 Oct 2024 14:19:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-cve-2023-28531-vulnerabilities-in-openssh-8-0p1/m-p/5204573#M592255</guid>
      <dc:creator>Kyle Stewart</dc:creator>
      <dc:date>2024-10-07T14:19:17Z</dc:date>
    </item>
  </channel>
</rss>

