New OpenSSH Vulnerability Discovered: Potential Remote Code Execution Risk
ID: 8dc08ef9-f4e6-535f-a787-5610704405e7
STIX ID: report--8dc08ef9-f4e6-535f-a787-5610704405e7
Feed Name: The Hacker News
Threat Score
The report details CVE-2024-6409, a signal-handler race condition in OpenSSH (CVSS 7.0) that can enable RCE in the privsep child process for OpenSSH 8.7p1 and 8.8p1 on RHEL9; it relates to CVE-2024-6387 and a related exploit has been observed in the wild targeting servers (with an IP indicator linked to exploit tooling).
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
