CVE-2024-6387

HIGHCVSS 8.1/10EPSS 99.51%

Last modified

CVE-2024-6387 is a high-severity vulnerability rated 8.1/10 on the CVSS scale. A security regression (CVE-2006-5051) was discovered in OpenSSH's server (sshd). There is a race condition which can lead sshd to handle some signals in an unsafe manner. EPSS estimates a 99.51% chance of exploitation in the next 30 days.

Description

A security regression (CVE-2006-5051) was discovered in OpenSSH's server (sshd). There is a race condition which can lead sshd to handle some signals in an unsafe manner. An unauthenticated, remote attacker may be able to trigger it by failing to authenticate within a set time period.

Metrics

CVSS 3.1
8.1/10

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H

EPSS Probability
99.51%

99.9th percentile

Probability of exploitation in the next 30 days. Learn more

Weakness Enumeration

Affected Software

VendorProductVersionsUpdate
SonicwallSma 6200 FirmwareAll versions
SonicwallSma 7200 FirmwareAll versions
AristaEos>= 4.32.0, <= 4.32.1f
CanonicalUbuntu Linux23.10
CanonicalUbuntu Linux24.04
AlmalinuxAlmalinux9.0
SonicwallSma 6210 FirmwareAll versions
SonicwallSma 7210 FirmwareAll versions
SonicwallSma 8200v FirmwareAll versions
SonicwallSra Ex 7000 FirmwareAll versions
NetappA1k FirmwareAll versions
NetappA70 FirmwareAll versions
NetappA90 FirmwareAll versions
NetappA700s FirmwareAll versions
Netapp8300 FirmwareAll versions
Netapp8700 FirmwareAll versions
NetappA400 FirmwareAll versions
NetappC400 FirmwareAll versions
NetappA250 FirmwareAll versions
Netapp500f FirmwareAll versions
NetappC250 FirmwareAll versions
NetappA800 FirmwareAll versions
NetappC800 FirmwareAll versions
NetappA900 FirmwareAll versions
NetappA9500 FirmwareAll versions
NetappC190 FirmwareAll versions
NetappA150 FirmwareAll versions
NetappA220 FirmwareAll versions
NetappFas2720 FirmwareAll versions
NetappFas2750 FirmwareAll versions
NetappFas2820 FirmwareAll versions
NetappBootstrap OsAll versions
AppleMacos>= 12.0, < 12.7.6
AppleMacos>= 13.0, < 13.6.8
AppleMacos>= 14.0, < 14.6
OpenbsdOpenssh< 4.4
OpenbsdOpenssh>= 8.6, <= 9.8
OpenbsdOpenssh4.4
OpenbsdOpenssh8.5P1
OpenbsdOpenssh8.6
RedhatOpenshift Container Platform4.0
RedhatEnterprise Linux9.0
RedhatEnterprise Linux Eus9.4
RedhatEnterprise Linux For Arm 649.0_aarch64
RedhatEnterprise Linux For Arm 64 Eus9.4_aarch64
RedhatEnterprise Linux For Ibm Z Systems9.0_s390x
RedhatEnterprise Linux For Ibm Z Systems Eus9.4_s390x
RedhatEnterprise Linux For Power Little Endian9.0_ppc64le
RedhatEnterprise Linux For Power Little Endian Eus9.4_ppc64le
RedhatEnterprise Linux Server Aus9.4

Showing 50 of 67 affected configurations. See NVD for the full list.

References

Timeline

Published
Last Modified
Status
Modified

Frequently Asked Questions

What is CVE-2024-6387?
A security regression (CVE-2006-5051) was discovered in OpenSSH's server (sshd). There is a race condition which can lead sshd to handle some signals in an unsafe manner. An unauthenticated, remote attacker may be able to trigger it by failing to authenticate within a set time period.
How severe is CVE-2024-6387?
CVE-2024-6387 has a CVSS score of 8.1/10 (HIGH severity). The EPSS model estimates a 99.51% probability of exploitation in the next 30 days.
How do I fix CVE-2024-6387?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2024-6387?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST