sk181833 - Check Point response to CVE-2023-48795
Check Point response to CVE-2023-48795
Product
Check Point Appliances, Maestro HyperScale Firewall, Scalable Chassis
Version
R80.40 (EOS), R81 (EOS), R81.10 (EOS), R81.20
Last Modified
2026-07-12
Symptoms
- The SSH transport protocol with some OpenSSH extensions, found in OpenSSH before version 9.6 and in other products, lets remote attackers bypass integrity checks, such that some packets are omitted from the extension negotiation message. A client and server may consequently end up with a connection for which some security features have been downgraded or disabled (also known as a Terrapin attack).
- One of OpenSSH's default-enabled cipher algorithms is vulnerable:
chacha20-poly1305.
Read more about CVE-2023-48795 here.
- SMB (Gaia Embedded OS) is not vulnerable.
Solution
This problem was fixed. The fix is included starting from:
Check Point recommends to always upgrade to the Recommended version.
If you choose not to upgrade, contact Check Point Support to get a Hotfix for your version. A Support Engineer will make sure the Hotfix is compatible with your environment before providing it.
For faster resolution and verification, collect these files:
- CPinfo file from the Management Server involved in the case.
- CPinfo file from the Security Gateway / each Cluster Member involved in the case.
Hotfix installation instructions:
Refer to sk168597 - How to install a Hotfix.
Workaround for Versions R81.20 and Earlier
For versions R81.20 and earlier, follow the relevant procedure below to disable the "chacha20-poly1305" cipher in OpenSSH.
Procedure for R81.10 and R81.20 Security Gateways / Management Servers / Log Servers
Note: For R81.10 Scalable Platforms, make the changes in Gaia Clish on each Security Group Member (SGM). For R81.20 Scalable platforms, the commands in the procedure are supported in Gaia gClish.
- Connect to the command line on the appliance.
- Show the list of enabled ciphers. In the list, look for
_chacha20-poly1305@openssh.com._show ssh server cipher enabled - Set the
chacha20-poly1305@openssh.comcipher tooff.set ssh server cipher chacha20-poly1305@openssh.com off - Save the configuration.
save config
Procedure for R80.40 and R81 - Security Gateways / Management Servers / Log Servers that run Gaia OS
- Connect to the command line on the appliance.
- Log in to the Expert mode.
- Get the list of the currently enabled ciphers and paste it into a plain-text editor (like Notepad++) on your computer:
sshd -T -C addr=localhost | grep -i ciphers - On your computer, in the plain-text editor, edit the list of the enabled ciphers to remove the unwanted ciphers. Important Note - If you do not see the unwanted cipher in this list, then your Gaia OS is not vulnerable. Stop the procedure.
Example:
- Before:
ciphers chacha20-poly1305@openssh.com,aes128-ctr,aes192-ctr,aes256-ctr,aes128-gcm@openssh.com,aes256-gcm@openssh.com - After:
ciphers aes128-ctr,aes192-ctr,aes256-ctr,aes128-gcm@openssh.com,aes256-gcm@openssh.com
- Back up the current SSH configuration file:
- R81, or R80.40 Jumbo Hotfix Take 83 and higher:
cp -v /etc/ssh/templates/sshd_config.templ{,_BKP} - R80.40, or R80.40 Jumbo Hotfix Take 78 and lower:
cp -v /etc/ssh/sshd_config{,_BKP}
- R81, or R80.40 Jumbo Hotfix Take 83 and higher:
- Edit the current SSH configuration file:
- R81, or R80.40 Jumbo Hotfix Take 83 and higher:
vi /etc/ssh/templates/sshd_config.templ - R80.40, or R80.40 Jumbo Hotfix Take 78 and lower:
vi /etc/ssh/sshd_config
- R81, or R80.40 Jumbo Hotfix Take 83 and higher:
- Look for the ciphers line.
Example:
ciphers 3des-cbc,blowfish-cbc,cast128-cbc,aes128-cbc,aes192-cbc,aes256-cbc,rijndael-cbc@lysator.liu.se,aes128-ctr,aes192-ctr,aes256-ctr,aes128-gcm@openssh.com,aes256-gcm@openssh.com - If this ciphers line exists in the SSH configuration file, then delete the current line and paste the modified ciphers line from your computer from the plain-text editor.
- If this ciphers line does not exist in the SSH configuration file, then paste the modified ciphers line from your computer from the plain-text editor above the line Match address.
- Save the changes in the file, and exit Vi editor.
- On R81, or R80.40 Jumbo Hotfix Take 83 and higher:
Run this command:
/bin/sshd_template_xlate < /config/active - Restart the SSH server:
service sshd restart
Procedure for R81 Scalable Platforms (Maestro and Chassis)
- Connect to the command line on the Security Group.
- If your default shell is Gaia gClish, then go to the Expert mode:
expert - Get the list of the currently enabled ciphers and paste it into a plain-text editor (like Notepad++) on your computer:
sshd -T -C addr=localhost | grep -i ciphers - On your computer, in the plain-text editor, edit the list of the enabled ciphers to remove the unwanted ciphers. Important Note - If you do not see the unwanted cipher in this list, then your Gaia OS is not vulnerable. Stop the procedure.
Example:
- Before:
ciphers chacha20-poly1305@openssh.com,aes128-ctr,aes192-ctr,aes256-ctr,aes128-gcm@openssh.com,aes256-gcm@openssh.com - After:
ciphers aes128-ctr,aes192-ctr,aes256-ctr,aes128-gcm@openssh.com,aes256-gcm@openssh.com
- Back up the current SSH configuration file:
g_all cp -v /etc/ssh/sshd_config{,_BKP} - Edit the current SSH configuration file:
vi /etc/ssh/sshd_config - Look for the ciphers line.
Example:
ciphers 3des-cbc,blowfish-cbc,cast128-cbc,aes128-cbc,aes192-cbc,aes256-cbc,rijndael-cbc@lysator.liu.se,aes128-ctr,aes192-ctr,aes256-ctr,aes128-gcm@openssh.com,aes256-gcm@openssh.com - If this ciphers line exists in the SSH configuration file, then delete the current line and paste the modified ciphers line from your computer from the plain-text editor.
- If this ciphers line does not exist in the SSH configuration file, then paste the modified ciphers line from your computer from the plain-text editor above the line Match address.
- Save the changes in the file, and exit Vi editor.
- Copy the modified file to all Security Group Members:
asg_cp2blades -b all /etc/ssh/sshd_config - Restart the SSH server:
g_all service sshd restart
Additional Notes
- You can add to the list, or remove from the list, any weak Cipher, MAC, or Kex.
- Vulnerability is also applicable to CBC ciphers
Example: ciphers 3des-cbc,blowfish-cbc,cast128-cbc,aes128-cbc,aes192-cbc,aes256-cbc,rijndael-cbc@lysator.liu.se
In order to pass the vulnerability scan, we need to remove not only chacha20 but also cbc ciphers.https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-48795
To make sure you applied the changes correctly, run the applicable command and examine the list:
- To see the Ciphers:
sshd -T -C addr=localhost | grep -w ciphers - To see the MAC values:
sshd -T -C addr=localhost | grep -w macs - To see the Kex values:
sshd -T -C addr=localhost | grep -w kexalgorithms
- To see the Ciphers:
NOTE
This solution has been verified for the specific scenario, described by the combination of Product, Version and Symptoms. It may not work in other scenarios.