CVE-2024-6387

HIGH
Published Jul 1, 2024 Modified May 12, 2026 CWE-364 CWE-362

Description

A security regression (CVE-2006-5051) was discovered in OpenSSH's server (sshd). There is a race condition which can lead sshd to handle some signals in an unsafe manner. An unauthenticated, remote attacker may be able to trigger it by failing to authenticate within a set time period.

CVSS v3.1 Score

8.1
HIGH
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H

Weakness Type (CWE)

CWE-364 CWE-364
CWE-362 CWE-362

Affected Products

Vendor Product
sonicwall sma_6200_firmware
sonicwall sma_6200
sonicwall sma_7200_firmware
sonicwall sma_7200
arista eos
canonical ubuntu_linux
canonical ubuntu_linux
almalinux almalinux
sonicwall sma_6210_firmware
sonicwall sma_6210
sonicwall sma_7210_firmware
sonicwall sma_7210
sonicwall sma_8200v_firmware
sonicwall sma_8200v
sonicwall sra_ex_7000_firmware
sonicwall sra_ex_7000
netapp a1k_firmware
netapp a1k
netapp a70_firmware
netapp a70
netapp a90_firmware
netapp a90
netapp a700s_firmware
netapp a700s
netapp 8300_firmware
netapp 8300
netapp 8700_firmware
netapp 8700
netapp a400_firmware
netapp a400
netapp c400_firmware
netapp c400
netapp a250_firmware
netapp a250
netapp 500f_firmware
netapp 500f
netapp c250_firmware
netapp c250
netapp a800_firmware
netapp a800
netapp c800_firmware
netapp c800
netapp a900_firmware
netapp a900
netapp a9500_firmware
netapp a9500
netapp c190_firmware
netapp c190
netapp a150_firmware
netapp a150
netapp a220_firmware
netapp a220
netapp fas2720_firmware
netapp fas2720
netapp fas2750_firmware
netapp fas2750
netapp fas2820_firmware
netapp fas2820
netapp bootstrap_os
netapp hci_compute_node
apple macos
apple macos
apple macos
openbsd openssh
openbsd openssh
openbsd openssh
openbsd openssh
openbsd openssh
redhat openshift_container_platform
redhat enterprise_linux
redhat enterprise_linux_eus
redhat enterprise_linux_for_arm_64
redhat enterprise_linux_for_arm_64_eus
redhat enterprise_linux_for_ibm_z_systems
redhat enterprise_linux_for_ibm_z_systems_eus
redhat enterprise_linux_for_power_little_endian
redhat enterprise_linux_for_power_little_endian_eus
redhat enterprise_linux_server_aus
suse linux_enterprise_micro
debian debian_linux
canonical ubuntu_linux
canonical ubuntu_linux
canonical ubuntu_linux
amazon amazon_linux
netapp active_iq_unified_manager
netapp e-series_santricity_os_controller
netapp ontap
netapp ontap_select_deploy_administration_utility
netapp ontap_tools
netapp ontap_tools
freebsd freebsd
freebsd freebsd
freebsd freebsd
freebsd freebsd
freebsd freebsd
freebsd freebsd
freebsd freebsd
freebsd freebsd
freebsd freebsd
freebsd freebsd
freebsd freebsd
freebsd freebsd
freebsd freebsd
freebsd freebsd
freebsd freebsd
freebsd freebsd
freebsd freebsd
freebsd freebsd
freebsd freebsd
freebsd freebsd
freebsd freebsd
freebsd freebsd
freebsd freebsd
freebsd freebsd
freebsd freebsd
freebsd freebsd
freebsd freebsd
freebsd freebsd
freebsd freebsd
netbsd netbsd

References

Frequently Asked Questions

What is CVE-2024-6387? +
A security regression (CVE-2006-5051) was discovered in OpenSSH's server (sshd). There is a race condition which can lead sshd to handle some signals in an unsafe manner. An unauthenticated, remote attacker may be able to trigger it by failing to authenticate within a set time period. It has a CVSS v3.1 base score of 8.1 (HIGH).
How severe is CVE-2024-6387? +
CVE-2024-6387 has a CVSS v3.1 score of 8.1 out of 10, rated HIGH. This is a high-severity vulnerability that should be prioritized for patching.
What products are affected by CVE-2024-6387? +
CVE-2024-6387 affects products from almalinux, amazon, apple, arista, canonical, debian, freebsd, netapp, netbsd, openbsd, redhat, sonicwall, suse, specifically: 500f, 500f_firmware, 8300, 8300_firmware, 8700, 8700_firmware, a150, a150_firmware, a1k, a1k_firmware, a220, a220_firmware, a250, a250_firmware, a400, a400_firmware, a70, a700s, a700s_firmware, a70_firmware, a800, a800_firmware, a90, a900, a900_firmware, a90_firmware, a9500, a9500_firmware, active_iq_unified_manager, almalinux, amazon_linux, bootstrap_os, c190, c190_firmware, c250, c250_firmware, c400, c400_firmware, c800, c800_firmware, debian_linux, e-series_santricity_os_controller, enterprise_linux, enterprise_linux_eus, enterprise_linux_for_arm_64, enterprise_linux_for_arm_64_eus, enterprise_linux_for_ibm_z_systems, enterprise_linux_for_ibm_z_systems_eus, enterprise_linux_for_power_little_endian, enterprise_linux_for_power_little_endian_eus, enterprise_linux_server_aus, eos, fas2720, fas2720_firmware, fas2750, fas2750_firmware, fas2820, fas2820_firmware, freebsd, hci_compute_node, linux_enterprise_micro, macos, netbsd, ontap, ontap_select_deploy_administration_utility, ontap_tools, openshift_container_platform, openssh, sma_6200, sma_6200_firmware, sma_6210, sma_6210_firmware, sma_7200, sma_7200_firmware, sma_7210, sma_7210_firmware, sma_8200v, sma_8200v_firmware, sra_ex_7000, sra_ex_7000_firmware, ubuntu_linux. Check the affected products table above for specific version ranges.
How do I check if I'm vulnerable to CVE-2024-6387? +
You can use Secably's free Website Scanner to check your website for known vulnerabilities. For infrastructure scanning, use the Port Scanner to identify exposed services that may be affected. Check the vendor advisories linked above for specific patch and version information.

Related Vulnerabilities

Don't wait for an exploit

Scan your website for vulnerabilities like CVE-2024-6387 — free, no signup required.

Start Free Scan