← Back to browse · API

CVE-2024-6387

Severity
HIGH
CVSS
8.0
EPSS
0.99506
Risk score
66.83
CISA KEV
No
PoC
No
Published
2024-07-01
Modified
2024-07-03
First seen
2026-08-06
Aliases
CNVD-2024-29805, EUVD-2024-47981, GHSA-2X8C-95VH-GFV4
Products
OpenSSH OpenSSH >=8.5p1 ,<9.8p1, Red Hat:Red Hat Enterprise Linux 9 patch: 0:8.7p1-38.el9_4.1, Red Hat:Red Hat Enterprise Linux 9.0 Update Services for SAP Solutions patch: 0:8.7p1-12.el9_0.1, Red Hat:Red Hat Enterprise Linux 9.2 Extended Update Support patch: 0:8.7p1-30.el9_2.4, Red Hat:Red Hat OpenShift Container Platform 4.13 patch: 413.92.202407091321-0, Red Hat:Red Hat OpenShift Container Platform 4.14 patch: 414.92.202407091253-0, Red Hat:Red Hat OpenShift Container Platform 4.15 patch: 415.92.202407091355-0, Red Hat:Red Hat OpenShift Container Platform 4.16 patch: 416.94.202407081958-0
Sources
euvd EUVD-2024-47981
cnvd CNVD-2024-29805

Description

OpenSSH is a set of secure networking utilities based on the Secure Shell (SSH) protocol, which provides encryption capabilities to ensure privacy and secure file transfers, making it an essential tool for remote server management and secure data communication. OpenSSH remote code execution vulnerability allows an unauthenticated attacker to execute arbitrary code as root on a Linux system.

References