« Volver al listado

CVE-2023-43644

Estado: ModificadaCrítica (9.8)—

Sing-box is an open source proxy system. Affected versions are subject to an authentication bypass when specially crafted requests are sent to sing-box. This affects all SOCKS5 inbounds with user authentication and an attacker may be able to bypass authentication. Users are advised to update to sing-box 1.4.4 or to 1.5.0-rc.4. Users unable to update should not expose the SOCKS5 inbound to insecure environments.

CVSS

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

Tecnologías afectadas (1)

CWE

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2023-43644",
  "cveTags": [],
  "metrics": {
    "ssvcV203": [
      {
        "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
        "ssvcData": {
          "id": "CVE-2023-43644",
          "role": "CISA Coordinator",
          "options": [
            {
              "exploitation": "none"
            },
            {
              "automatable": "yes"
            },
            {
              "technicalImpact": "partial"
            }
          ],
          "version": "2.0.3",
          "timestamp": "2024-09-24T19:28:06.483745Z"
        }
      }
    ],
    "cvssMetricV31": [
      {
        "type": "Secondary",
        "source": "security-advisories@github.com",
        "cvssData": {
          "scope": "UNCHANGED",
          "version": "3.1",
          "baseScore": 9.1,
          "attackVector": "NETWORK",
          "baseSeverity": "CRITICAL",
          "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H",
          "integrityImpact": "NONE",
          "userInteraction": "NONE",
          "attackComplexity": "LOW",
          "availabilityImpact": "HIGH",
          "privilegesRequired": "NONE",
          "confidentialityImpact": "HIGH"
        },
        "impactScore": 5.2,
        "exploitabilityScore": 3.9
      },
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "scope": "UNCHANGED",
          "version": "3.1",
          "baseScore": 9.8,
          "attackVector": "NETWORK",
          "baseSeverity": "CRITICAL",
          "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
          "integrityImpact": "HIGH",
          "userInteraction": "NONE",
          "attackComplexity": "LOW",
          "availabilityImpact": "HIGH",
          "privilegesRequired": "NONE",
          "confidentialityImpact": "HIGH"
        },
        "impactScore": 5.9,
        "exploitabilityScore": 3.9
      }
    ]
  },
  "affected": [
    {
      "source": "security-advisories@github.com",
      "affectedData": [
        {
          "vendor": "SagerNet",
          "product": "sing-box",
          "versions": [
            {
              "status": "affected",
              "version": "< 1.4.5"
            },
            {
              "status": "affected",
              "version": ">= 1.5.0-beta.1, < 1.5.0-rc.4"
            }
          ]
        }
      ]
    },
    {
      "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
      "affectedData": [
        {
          "cpes": [
            "cpe:2.3:a:sagernet:sing-box:*:*:*:*:*:*:*:*"
          ],
          "vendor": "sagernet",
          "product": "sing-box",
          "versions": [
            {
              "status": "affected",
              "version": "0",
              "lessThan": "1.5.0-rc.5",
              "versionType": "custom"
            }
          ],
          "defaultStatus": "unknown"
        }
      ]
    }
  ],
  "published": "2023-09-25T20:15:11.977",
  "references": [
    {
      "url": "https://github.com/SagerNet/sing-box/security/advisories/GHSA-r5hm-mp3j-285g",
      "tags": [
        "Vendor Advisory"
      ],
      "source": "security-advisories@github.com"
    },
    {
      "url": "https://github.com/SagerNet/sing-box/security/advisories/GHSA-r5hm-mp3j-285g",
      "tags": [
        "Vendor Advisory"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    }
  ],
  "vulnStatus": "Modified",
  "weaknesses": [
    {
      "type": "Secondary",
      "source": "security-advisories@github.com",
      "description": [
        {
          "lang": "en",
          "value": "CWE-306"
        }
      ]
    }
  ],
  "descriptions": [
    {
      "lang": "en",
      "value": "Sing-box is an open source proxy system. Affected versions are subject to an authentication bypass when specially crafted requests are sent to sing-box. This affects all SOCKS5 inbounds with user authentication and an attacker may be able to bypass authentication. Users are advised to update to sing-box 1.4.4 or to 1.5.0-rc.4. Users unable to update should not expose the SOCKS5 inbound to insecure environments."
    },
    {
      "lang": "es",
      "value": "Sing-box es un sistema proxy de código abierto. Las versiones afectadas están sujetas a una omisión de autenticación cuando se envían solicitudes especialmente manipuladas a sing-box. Esto afecta a todas las entradas de SOCKS5 con autenticación de usuario y un atacante puede eludir la autenticación. Se recomienda a los usuarios que actualicen a sing-box 1.4.4 o 1.5.0-rc.4. Los usuarios que no puedan actualizar no deben exponer el SOCKS5 entrante a entornos inseguros."
    }
  ],
  "lastModified": "2026-06-17T06:26:08.493",
  "configurations": [
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:a:sagernet:sing-box:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "4972A756-DC5E-43FB-B620-E427D21C2C75",
              "versionEndExcluding": "1.4.5"
            },
            {
              "criteria": "cpe:2.3:a:sagernet:sing-box:1.5.0:beta1:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "ADAC3151-F2C5-4980-A536-98BDDDD8E3ED"
            },
            {
              "criteria": "cpe:2.3:a:sagernet:sing-box:1.5.0:beta10:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "D264A330-9D7F-43C3-856E-3396ACC0833A"
            },
            {
              "criteria": "cpe:2.3:a:sagernet:sing-box:1.5.0:beta11:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "2504CDDA-98C0-468C-9086-A5E1751F5DEF"
            },
            {
              "criteria": "cpe:2.3:a:sagernet:sing-box:1.5.0:beta12:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "D8EDF2D9-103D-45AD-ACCD-C6DF4BB9A404"
            },
            {
              "criteria": "cpe:2.3:a:sagernet:sing-box:1.5.0:beta2:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "3300566A-5BD3-4A71-AF67-E531E3370BAF"
            },
            {
              "criteria": "cpe:2.3:a:sagernet:sing-box:1.5.0:beta3:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "75092672-6335-4EEF-A93C-AE2AA748D7CE"
            },
            {
              "criteria": "cpe:2.3:a:sagernet:sing-box:1.5.0:beta4:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "703D6A00-02E1-4106-AB7F-97DC45765EFA"
            },
            {
              "criteria": "cpe:2.3:a:sagernet:sing-box:1.5.0:beta5:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "216B8A68-7463-4C0C-9076-AAB69D05C366"
            },
            {
              "criteria": "cpe:2.3:a:sagernet:sing-box:1.5.0:beta6:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "13845DC3-7381-49F4-A247-AA568E451078"
            },
            {
              "criteria": "cpe:2.3:a:sagernet:sing-box:1.5.0:beta7:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "2892FCCF-A001-4466-8070-62CD7EBE1B28"
            },
            {
              "criteria": "cpe:2.3:a:sagernet:sing-box:1.5.0:beta8:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "2BC1E39F-E7D8-41C9-B64A-2241A540D543"
            },
            {
              "criteria": "cpe:2.3:a:sagernet:sing-box:1.5.0:beta9:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "2C1725F2-4B98-46F1-8EF2-11E42C3B6260"
            },
            {
              "criteria": "cpe:2.3:a:sagernet:sing-box:1.5.0:rc1:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "91E7CBF9-8577-4F59-83D4-1505AED807B8"
            },
            {
              "criteria": "cpe:2.3:a:sagernet:sing-box:1.5.0:rc2:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "31FA3E9E-8ED2-4DDF-93DB-8F0325DDD752"
            },
            {
              "criteria": "cpe:2.3:a:sagernet:sing-box:1.5.0:rc3:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "8C21D94A-A22B-46E5-987B-304920106669"
            }
          ],
          "operator": "OR"
        }
      ]
    }
  ],
  "sourceIdentifier": "security-advisories@github.com"
}