CVE-2024-6387 EXPLOIT
8.1
HIGH · CVSS 3.1 · EPSS 99.5% (pctl 100)
Patch early
A public exploit exists.
Description
A security regression (CVE-2006-5051) was discovered in OpenSSH's server (sshd). There is a race condition which can lead sshd to handle some signals in an unsafe manner. An unauthenticated, remote attacker may be able to trigger it by failing to authenticate within a set time period.
Scoring
| CVSS | 8.1 (HIGH, v3.1) |
|---|---|
| Vector | CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H |
| EPSS | 99.51% — more likely to be exploited than 100% of all CVEs |
| Weakness | CWE-364 |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2024-07-01 |
| Last modified | 2026-09-01 |
Affected (40)
| Vendor | Product |
|---|---|
| almalinux | almalinux |
| arista | eos |
| canonical | ubuntu linux |
| netapp | 500f |
| netapp | 500f firmware |
| netapp | 8300 |
| netapp | 8300 firmware |
| netapp | 8700 |
| netapp | 8700 firmware |
| netapp | a1k |
| netapp | a1k firmware |
| netapp | a250 |
| netapp | a250 firmware |
| netapp | a400 |
| netapp | a400 firmware |
| netapp | a70 |
| netapp | a70 firmware |
| netapp | a700s |
| netapp | a700s firmware |
| netapp | a800 |
| netapp | a800 firmware |
| netapp | a90 |
| netapp | a90 firmware |
| netapp | c250 |
| netapp | c250 firmware |
| netapp | c400 |
| netapp | c400 firmware |
| netapp | c800 firmware |
| sonicwall | sma 6200 |
| sonicwall | sma 6200 firmware |
| sonicwall | sma 6210 |
| sonicwall | sma 6210 firmware |
| sonicwall | sma 7200 |
| sonicwall | sma 7200 firmware |
| sonicwall | sma 7210 |
| sonicwall | sma 7210 firmware |
| sonicwall | sma 8200v |
| sonicwall | sma 8200v firmware |
| sonicwall | sra ex 7000 |
| sonicwall | sra ex 7000 firmware |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | OpenSSH server (sshd) 9.8p1 - Race Condition | 2025-04-22 |
References
- https://access.redhat.com/errata/RHSA-2024:4312
- https://access.redhat.com/errata/RHSA-2024:4340
- https://access.redhat.com/errata/RHSA-2024:4389
- https://access.redhat.com/errata/RHSA-2024:4469
- https://access.redhat.com/errata/RHSA-2024:4474
- https://access.redhat.com/errata/RHSA-2024:4479
- https://access.redhat.com/errata/RHSA-2024:4484
- https://access.redhat.com/security/cve/CVE-2024-6387
- https://bugzilla.redhat.com/show_bug.cgi?id=2294604
- https://santandersecurityresearch.github.io/blog/sshing_the_masses.html
- https://www.openssh.com/txt/release-9.8
- https://www.qualys.com/2024/07/01/cve-2024-6387/regresshion.txt
- http://seclists.org/fulldisclosure/2024/Jul/18
- http://seclists.org/fulldisclosure/2024/Jul/19
- http://seclists.org/fulldisclosure/2024/Jul/20
- http://www.openwall.com/lists/oss-security/2024/07/01/12
- http://www.openwall.com/lists/oss-security/2024/07/01/13
- http://www.openwall.com/lists/oss-security/2024/07/02/1
- http://www.openwall.com/lists/oss-security/2024/07/03/1
- http://www.openwall.com/lists/oss-security/2024/07/03/11
→ the Explorer · watch your stack · NVD