logo

New OpenSSH Vulnerability Discovered: Potential Remote Code Execution Risk

ID: 8dc08ef9-f4e6-535f-a787-5610704405e7

STIX ID: report--8dc08ef9-f4e6-535f-a787-5610704405e7

Feed Name: The Hacker News

Threat Score
70/100

Date Published: 2024-07-10

Date Updated: 2026-05-08

Author: [email protected] (The Hacker News)

...
...

The report details CVE-2024-6409, a signal-handler race condition in OpenSSH (CVSS 7.0) that can enable RCE in the privsep child process for OpenSSH 8.7p1 and 8.8p1 on RHEL9; it relates to CVE-2024-6387 and a related exploit has been observed in the wild targeting servers (with an IP indicator linked to exploit tooling).

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.