Maintained with ☕️ by
IcePanel logo

A remote code execution vulnerability, CVE-2024-6387, was recently discovered in OpenSSH

Share

Services

## Security A remote code execution vulnerability, [CVE-2024-6387](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-6387), was recently discovered in OpenSSH. The vulnerability exploits a race condition that can be used to obtain access to a remote shell, enabling attackers to gain root access. At the time of publication, exploitation is believed to be difficult and take several hours per machine being attacked. We are not aware of any exploitation attempts. This vulnerability has a Critical severity. For mitigation steps and more details, see the [GCP-2024-040](https://cloud.google.com/anthos/clusters/docs/security-bulletins#gcp-2024-040) security bulletin.