البحث في الموقع

التنبيهات الأمنية

مستوى الخطورة: Critical

  

العنوان: 

Critical RCE Vulnerability in OpenSSH Linux system

الوقت:

Tuesday July 2, 2024

ملخص:

A Remote Unauthenticated Code Execution (RCE) vulnerability CVE-2024-6387 exists in OpenSSH’s server (sshd) in glibc-based Linux systems, which is a signal handler race condition in OpenSSH’s server (sshd), allows unauthenticated remote code execution (RCE) as root on glibc-based Linux systems; that presents a significant security risk. This race condition affects sshd in its default configuration.

 
التوصيات:

 

upgrade to fixed version at the earliest

:المراجع

 للاطلاع على المراجع:

 أنقر هنا