CVE-2024-6387

Published Jul 1, 2024

Last updated 4 months ago

Insights

Analysis from the Intruder Security Team
Published Oct 15, 2024

This vulnerability affects OpenSSH and could allow an attacker to execute commands on an affected device. The vulnerability is highly complex and has limitations which is likely to prevent widespread exploitation.

More information is available in our blog post here.

Overview

Description
A security regression (CVE-2006-5051) was discovered in OpenSSH's server (sshd). There is a race condition which can lead sshd to handle some signals in an unsafe manner. An unauthenticated, remote attacker may be able to trigger it by failing to authenticate within a set time period.
Source
secalert@redhat.com
NVD status
Modified

Risk scores

CVSS 3.1

Type
Primary
Base score
8.1
Impact score
5.9
Exploitability score
2.2
Vector string
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Severity
HIGH

Weaknesses

nvd@nist.gov
CWE-362
secalert@redhat.com
CWE-364

Social media

Hype score
Not currently trending
  1. به تازگی برای سرویس openssh آسیب پذیری با کد شناسایی CVE-2024-6387 منتشر شده است. این آسیب پذیری بر روی سیستم عامل های لینوکس دارای GNU C Library یا همان (glibc) اکسپلویت شده و بر روی FreeBSD تاثیر گذار نمی باشد. POC این آسیب پذیری منتشر شده است. https://t.co/Poz3aKY03t https://t

    @AmirHossein_sec

    12 Jan 2025

    80 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  2. I'm so excited to finally open source this! Shout out to CVE-2024-6387 for the inspiration! I present to you.... golash: a golang interpreter script https://t.co/wS4vjgrq5L I use it at work. It's a huge productivity booster 😃!

    @BugSquasherTay

    8 Jan 2025

    11 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  3. Se publica un exploit PoC para la vulnerabilidad de ejecución de código arbitrario en OpenSSH CVE-2024-6387, “regreSSHion” https://t.co/GBMevVk9Ap https://t.co/vczQslRULf

    @elhackernet

    7 Jan 2025

    5556 Impressions

    37 Retweets

    105 Likes

    39 Bookmarks

    0 Replies

    1 Quote

  4. Critical OpenSSH Vulnerability (CVE-2024-6387) Exploit Released - First Hackers News https://t.co/OwyQDv22r6 https://t.co/cjNPB7tB7x

    @Info_FHNews

    7 Jan 2025

    49 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  5. PoC Exploit Released for Critical OpenSSH Vulnerability (CVE-2024-6387) #JustUnsecure #AFrihackbox https://t.co/vER81aCNXd

    @afrihackbox

    7 Jan 2025

    60 Impressions

    0 Retweets

    1 Like

    0 Bookmarks

    0 Replies

    0 Quotes

  6. #PoC #Exploit Released for Critical #OpenSSH Vulnerability (CVE-2024-6387) https://t.co/UyUBB2hYjU

    @CyberAndyDE

    6 Jan 2025

    59 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  7. CVE-2024-6387: A security regression (CVE-2006-5051) was discovered in OpenSSH's server (sshd). There is a race condition .. An unauthenticated, remote attacker may be able to trigger it by failing to authenticate within a set time period. https://t.co/ipv0jUGFNR https://t.co/WM

    @cyber_advising

    4 Jan 2025

    872 Impressions

    3 Retweets

    11 Likes

    3 Bookmarks

    0 Replies

    0 Quotes

  8. This Python script checks for the CVE-2024-6387 vulnerability in OpenSSH servers. It supports multiple IP addresses, URLs, CIDR ranges, and ports. For more: https://t.co/7hLqA3dpXd…… #Hacking #infosec #cybersecurity #infosecurity #redteam #Pentesting #cybersecuritytips https://

    @ClefTheHacker

    23 Dec 2024

    38 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  9. ⚫️CVE-2024-6387 : OpenSSH 'user authenticatio' 8.5p1 – 9.7p1 -Input validation 2 Remote Code Execution (regreSSHion) POC : https://t.co/72BHyG0iqJ ⚫️CVE-2024-45519 : Zimbra Collaboration Suite 'postjournal' $versions - Remote Code Execution POC : https://t.co/Wb18o30BII

    @HackingTeam777

    21 Dec 2024

    737 Impressions

    2 Retweets

    23 Likes

    7 Bookmarks

    1 Reply

    0 Quotes

  10. Top 5 Trending CVEs: 1 - CVE-2024-38144 2 - CVE-2024-6387 3 - CVE-2020-14938 4 - CVE-2024-7970 5 - CVE-2024-3400 #cve #cvetrends #cveshield #cybersecurity https://t.co/4Fua3CAN6W

    @CVEShield

    8 Dec 2024

    109 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  11. GitHub - asterictnl-lvdw/CVE-2024-6387: Remote Unauthenticated Code Execution Vulnerability in OpenSSH server (CVE-2024-6387) https://t.co/J0akwo4LV5

    @akaclandestine

    6 Dec 2024

    1149 Impressions

    6 Retweets

    19 Likes

    8 Bookmarks

    0 Replies

    0 Quotes

  12. RegreSSHion The Qualys Threat Research Unit has discovered a Remote Unauthenticated Code Execution vulnerability in OpenSSH’s server (sshd) in glibc-based Linux systems. #CVE assigned to this vulnerability is CVE-2024-6387. https://t.co/qOgFNZUpUw… #cybersecurity #infosec https

    @Rhae981380

    27 Oct 2024

    78 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  13. A newly discovered security vulnerability, dubbed "regreSSHion" (CVE-2024-6387), puts millions of OpenSSH server instances at: https://t.co/IwXq0FbPtI

    @linux_ly

    26 Oct 2024

    69 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  14. RCE in OpenSSH's server, on glibc-based Linux systems (CVE-2024-6387) https://t.co/9zzcpscFSZ

    @locus_x64

    43 Impressions

    0 Retweets

    1 Like

    0 Bookmarks

    2 Replies

    0 Quotes

Configurations