logo

Threat Brief: CVE-2024-6387 OpenSSH RegreSSHion Vulnerability

ID: 0ba2fe60-f699-5a87-a101-1c03d5558ae8

STIX ID: report--0ba2fe60-f699-5a87-a101-1c03d5558ae8

Feed Name: Palo Alto Networks Unit 42

Threat Score
70/100

Date Published: 2024-07-02

Date Updated: 2026-04-28

Author: Unit 42

...
...

On July 1, 2024 Unit 42 published an advisory on CVE-2024-6387 (RegreSSHion), a signal-handler race condition in OpenSSH (sshd) on glibc-based Linux that can lead to unauthenticated remote code execution as root (CVSS 8.1); the report lists affected version ranges, estimates millions of potentially exposed hosts globally, notes a public PoC that Unit 42 could not reproduce and no known in‑the‑wild exploitation as of early July 2024, and provides mitigation recommendations and product protections.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.