Threat Brief: CVE-2024-6387 OpenSSH RegreSSHion Vulnerability
ID: 0ba2fe60-f699-5a87-a101-1c03d5558ae8
STIX ID: report--0ba2fe60-f699-5a87-a101-1c03d5558ae8
Feed Name: Palo Alto Networks Unit 42
On July 1, 2024 Unit 42 published an advisory on CVE-2024-6387 (RegreSSHion), a signal-handler race condition in OpenSSH (sshd) on glibc-based Linux that can lead to unauthenticated remote code execution as root (CVSS 8.1); the report lists affected version ranges, estimates millions of potentially exposed hosts globally, notes a public PoC that Unit 42 could not reproduce and no known in‑the‑wild exploitation as of early July 2024, and provides mitigation recommendations and product protections.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
