Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2024-6387

89
FAUCET Score

CVE-2024-6387, dubbed "regreSSHion," is a critical race condition vulnerability in the OpenSSH server (sshd) that allows unsafe signal handling, impacting numerous Linux distributions and OpenSSH-based products. This high-severity flaw (CVSS 8.1) can be triggered remotely by an unauthenticated attacker failing to authenticate within a set time, potentially leading to full system compromise with high impact on confidentiality, integrity, and availability. The vulnerability is on the "Hot List: Active," indicating a high risk of exploitation, with public exploit code available on platforms like ExploitDB and significant community and media attention.

Impacted Technologies

VendorProductVersion(s)CPE
Range not provided by sourceCPE matchmatch criteria
cpe:2.3:o:sonicwall:sma_6200_firmware:-:*:*:*:*:*:*:*
Range not provided by sourceCPE matchmatch criteria
cpe:2.3:o:sonicwall:sma_7200_firmware:-:*:*:*:*:*:*:*
>= 4.32.0, <= 4.32.1fCPE matchmatch criteria
cpe:2.3:o:arista:eos:*:*:*:*:*:*:*:*
23.10CPE matchmatch criteria
cpe:2.3:o:canonical:ubuntu_linux:23.10:*:*:*:*:*:*:*
24.04CPE matchmatch criteria
cpe:2.3:o:canonical:ubuntu_linux:24.04:*:*:*:lts:*:*:*

CVSS Data

CVSS version used by this source: 3.1

8.1HIGH

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H

Attack Vector
NETWORK
Attack Complexity
HIGH
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
Exploitability Score
2.2
Impact Score
5.9
CvssVersion
3.1

Exploit Intelligence

EPSS Score
99.51%
Probability of exploitation in next 30 days
EPSS Percentile
99.9%
Percentile rank of EPSS score among Peer Group
As of 2026-07-27
Model: v2026.06.15
ExploitDB: EDB-52269 · Apr 22, 2025
This CVE's current EPSS score of 0.9951 is in the 100th percentile among its peer group of 8,920 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.

Media Mentions

The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (36)

githubpatch availablevia llm_extracted
View patch
github_advisorypatch availablevia nvd_reference
View patch
latchsetpatch availablevia llm_extracted
Fixed in: 9.8
View patch
microsoftpatch availablevia msrc
Product: Azure Arc Resource Bridge on Azure Stack HCIFixed in: 2408
View patch
microsoftpatch availablevia msrc
Product: 12391-12393Fixed in: 1.2.0
View patch
microsoftpatch availablevia msrc
Product: 12391-12394Fixed in: 2408
View patch
microsoftpatch availablevia msrc
Product: 12391-12392Fixed in: 1.2.0
View patch
microsoftpatch availablevia msrc
Product: CBL Mariner 2.0 ARMFixed in: 8.9p1-6
microsoftpatch availablevia msrc
Product: CBL Mariner 2.0 x64Fixed in: 8.9p1-6
microsoftpatch availablevia msrc
Product: Azure Kubernetes Service Node on Azure LinuxFixed in: 202407.03.0
View patch
microsoftpatch availablevia msrc
Product: Azure Kubernetes Service Node on Ubuntu LinuxFixed in: 202407.08.0
View patch
microsoftpatch availablevia msrc
Product: Azure Arc Resource Bridge on Azure Arc-enabled VMware vSphereFixed in: 1.2.0
View patch
microsoftpatch availablevia msrc
Product: Azure Arc Resource Bridge on Azure Arc-enabled System Center Virtual Machine ManagerFixed in: 1.2.0
View patch
nodejspatch availablevia llm_extracted
View patch
nodejspatch availablevia llm_extracted
Fixed in: 9.8
View patch
openldappatch availablevia llm_extracted
Fixed in: 9.8
View patch
redhatpatch availablevia redhat_api
Product: Red Hat OpenShift Container Platform 4.15Fixed in: rhcos-415.92.202407091355-0
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 9.0 Update Services for SAP SolutionsFixed in: openssh-0:8.7p1-12.el9_0.1
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 9Fixed in: openssh-0:8.7p1-38.el9_4.1
View patch
redhatpatch availablevia redhat_api
Product: Red Hat OpenShift Container Platform 4.16Fixed in: rhcos-416.94.202407081958-0
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 9.2 Extended Update SupportFixed in: openssh-0:8.7p1-30.el9_2.4
View patch
redhatpatch availablevia redhat_api
Product: Red Hat OpenShift Container Platform 4.13Fixed in: rhcos-413.92.202407091321-0
View patch
redhatpatch availablevia redhat_api
Product: Red Hat OpenShift Container Platform 4.14Fixed in: rhcos-414.92.202407091253-0
View patch
traefikpatch availablevia llm_extracted
Fixed in: 9.8
View patch
barracudavendor investigatingvia llm_extracted
bentomlvendor investigatingvia llm_extracted
boschvendor investigatingvia llm_extracted
broadcomvendor investigatingvia llm_extracted
clamavvendor investigatingvia llm_extracted
consulvendor investigatingvia llm_extracted
freshrssvendor investigatingvia llm_extracted
honeywellvendor investigatingvia llm_extracted
pjsipvendor investigatingvia llm_extracted
View patch
qdrantvendor investigatingvia llm_extracted
symantecvendor investigatingvia llm_extracted
verbbvendor investigatingvia llm_extracted

Vendor Advisories (21)

nodejsllm-nodejs-302528ae26f0d946CRITICAL

HP ThinPro 8.1 SP4 Security Updates

Oct 29, 2024
pjsipllm-pjsip-7ba3ec379210ac70CRITICAL

HP ThinPro 8.1 SP4 Security Updates

Oct 29, 2024
barracudallm-barracuda-37e487c411e08674

OpenSSH Security Regression (CVE-2006-5051) Vulnerability

Jul 25, 2024
symantecllm-symantec-18c7c21dcc84e24e

OpenSSH Security Regression (CVE-2006-5051) Vulnerability

Jul 25, 2024
verbbllm-verbb-db25382b00b92fe5

OpenSSH Security Regression (CVE-2006-5051) Vulnerability

Jul 25, 2024
consulllm-consul-1e2472192a43c8cb

OpenSSH Security Regression (CVE-2006-5051) Vulnerability

Jul 25, 2024
freshrssllm-freshrss-7787d5be568b040d

OpenSSH Security Regression (CVE-2006-5051) Vulnerability

Jul 25, 2024
qdrantllm-qdrant-d0df1cc861d9fdcf

OpenSSH Security Regression (CVE-2006-5051) Vulnerability

Jul 25, 2024
clamavllm-clamav-cc477370833dc122

OpenSSH Security Regression (CVE-2006-5051) Vulnerability

Jul 25, 2024
boschllm-bosch-610eebfd780884c5

OpenSSH Security Regression (CVE-2006-5051) Vulnerability

Jul 25, 2024
honeywellllm-honeywell-1dd99cbc5ebba574HIGH

"regreSSHion" OpenSSH vulnerability in PRC7000

Jul 19, 2024
bentomlllm-bentoml-bbe313469620038eHIGH

"regreSSHion" OpenSSH vulnerability in PRC7000

Jul 19, 2024
pjsipllm-pjsip-e50fd2bd09d4d296HIGH

"regreSSHion" OpenSSH vulnerability in PRC7000

Jul 19, 2024
broadcomllm-broadcom-02080a6f0265252cHIGH

"regreSSHion" OpenSSH vulnerability in PRC7000

Jul 19, 2024
githubllm-github-b8d74c307bb2f644HIGH

AS-2024-004: OpenSSH

Jul 17, 2024
microsoft2024-Jul/CVE-2024-6387Critical

RedHat Openssh: CVE-2024-6387 Remote Code Execution Due To A Race Condition In Signal Handling

Jul 9, 2024
redhatCVE-2024-6387Important

openssh: regreSSHion - race condition in SSH allows RCE/DoS

Jul 1, 2024
traefikllm-traefik-c9d50851cb5d1bd2HIGH

Race condition resulting in potential remote code execution

Jul 1, 2024
openldapllm-openldap-6df22907b9f103b1

Race condition resulting in potential remote code execution.

Jul 1, 2024
nodejsllm-nodejs-e4f6645e55dffea6

Race condition resulting in potential remote code execution.

Jul 1, 2024
latchsetllm-latchset-70af434ac8a947d4

Race condition resulting in potential remote code execution.

Jul 1, 2024

References

cert-portal.siemens.com / productcert/html/ssa-082556.html
cert-portal.siemens.com / productcert/html/ssa-446545.html
archlinux.org / news/the-sshd-service-needs-to-be-restarted-after-upgrading-to-openssh-98p1
Third Party Advisory
arstechnica.com / security/2024/07/regresshion-vulnerability-in-openssh-gives-attackers-root-on-linux
Press/Media CoverageThird Party Advisory
blog.qualys.com / vulnerabilities-threat-research/2024/07/01/regresshion-remote-unauthenticated-code-execution-vulnerability-in-openssh-server
Press/Media CoverageThird Party Advisory
seclists.org / fulldisclosure/2024/Jul/18
Mailing List
seclists.org / fulldisclosure/2024/Jul/19
Mailing List
seclists.org / fulldisclosure/2024/Jul/20
Mailing List
explore.alas.aws.amazon.com / CVE-2024-6387.html
Third Party Advisory
forum.vmssoftware.com / viewtopic.php
Issue Tracking
ftp.netbsd.org / pub/NetBSD/security/advisories/NetBSD-SA2024-002.txt.asc
Release Notes
github.com / AlmaLinux/updates/issues/629
Issue Tracking
github.com / Azure/AKS/issues/4379
Issue Tracking
github.com / microsoft/azurelinux/issues/9555
Issue Tracking
github.com / openela-main/openssh/commit/e1f438970e5a337a17070a637c1b9e19697cad09
Patch
github.com / oracle/oracle-linux/issues/149
Issue Tracking
github.com / PowerShell/Win32-OpenSSH/discussions/2248
Issue Tracking
github.com / PowerShell/Win32-OpenSSH/issues/2249
Issue Tracking
github.com / rapier1/hpn-ssh/issues/87
Issue Tracking
github.com / zgzhang/cve-2024-6387-poc
Third Party Advisory
lists.almalinux.org / archives/list/[email protected]/thread/23BF5BMGFVEVUI2WNVAGMLKT557EU7VY
Third Party Advisory
lists.mindrot.org / pipermail/openssh-unix-announce/2024-July/000158.html
Mailing ListRelease Notes
lists.mindrot.org / pipermail/openssh-unix-dev/2024-July/041431.html
Mailing ListPatch
news.ycombinator.com / item
Issue TrackingPatch
packetstorm.news / files/id/190587
Broken Link
psirt.global.sonicwall.com / vuln-detail/SNWLID-2024-0010
Third Party Advisory
security.netapp.com / advisory/ntap-20240701-0001
Third Party Advisory
security-tracker.debian.org / tracker/CVE-2024-6387
Third Party Advisory
sig-security.rocky.page / issues/CVE-2024-6387
Third Party Advisory
stackdiary.com / openssh-race-condition-in-sshd-allows-remote-code-execution
Press/Media CoverageThird Party Advisory
support.apple.com / kb/HT214118
Third Party Advisory
support.apple.com / kb/HT214119
Third Party Advisory
support.apple.com / kb/HT214120
Third Party Advisory
ubuntu.com / security/CVE-2024-6387
Third Party Advisory
ubuntu.com / security/notices/USN-6859-1
Third Party Advisory
akamai.com / blog/security-research/2024-openssh-vulnerability-regression-what-to-know-and-do
Third Party Advisory
arista.com / en/support/advisories-notices/security-advisory/19904-security-advisory-0100
Third Party Advisory
exploit-db.com / exploits/52269
Exploit
freebsd.org / security/advisories/FreeBSD-SA-24:04.openssh.asc
Third Party Advisory
splunk.com / en_us/blog/security/cve-2024-6387-regresshion-vulnerability.html
Third Party Advisory
suse.com / security/cve/CVE-2024-6387.html
Third Party Advisory
theregister.com / 2024/07/01/regresshion_openssh
Press/Media CoverageThird Party Advisory
vicarius.io / vsociety/posts/regresshion-an-openssh-regression-error-cve-2024-6387
ExploitThird Party Advisory
openwall.com / lists/oss-security/2024/07/01/12
Mailing List
openwall.com / lists/oss-security/2024/07/01/13
Mailing List
openwall.com / lists/oss-security/2024/07/02/1
Mailing List
openwall.com / lists/oss-security/2024/07/03/1
Mailing List
openwall.com / lists/oss-security/2024/07/03/11
ExploitMailing List
openwall.com / lists/oss-security/2024/07/03/2
Mailing List
openwall.com / lists/oss-security/2024/07/03/3
Mailing ListPatch
openwall.com / lists/oss-security/2024/07/03/4
Mailing List
openwall.com / lists/oss-security/2024/07/03/5
Mailing List
openwall.com / lists/oss-security/2024/07/04/1
Mailing List
openwall.com / lists/oss-security/2024/07/04/2
ExploitMailing List
openwall.com / lists/oss-security/2024/07/08/2
ExploitMailing List
openwall.com / lists/oss-security/2024/07/08/3
Mailing List
openwall.com / lists/oss-security/2024/07/09/2
Mailing List
openwall.com / lists/oss-security/2024/07/09/5
ExploitMailing List
openwall.com / lists/oss-security/2024/07/10/1
ExploitMailing List
openwall.com / lists/oss-security/2024/07/10/2
Mailing List
openwall.com / lists/oss-security/2024/07/10/3
Mailing List
openwall.com / lists/oss-security/2024/07/10/4
Mailing List
openwall.com / lists/oss-security/2024/07/10/6
Mailing List
openwall.com / lists/oss-security/2024/07/11/1
Mailing List
openwall.com / lists/oss-security/2024/07/11/3
Mailing List
openwall.com / lists/oss-security/2024/07/23/4
Mailing List
openwall.com / lists/oss-security/2024/07/23/6
Mailing List
openwall.com / lists/oss-security/2024/07/28/2
Mailing List
openwall.com / lists/oss-security/2024/07/28/3
Mailing List
access.redhat.com / errata/RHSA-2024:4312
Third Party Advisory
access.redhat.com / errata/RHSA-2024:4340
Third Party Advisory
access.redhat.com / errata/RHSA-2024:4389
Third Party Advisory
access.redhat.com / errata/RHSA-2024:4469
Third Party Advisory
access.redhat.com / errata/RHSA-2024:4474
Third Party Advisory
access.redhat.com / errata/RHSA-2024:4479
Third Party Advisory
access.redhat.com / errata/RHSA-2024:4484
Third Party Advisory
access.redhat.com / security/cve/CVE-2024-6387
Third Party Advisory
bugzilla.redhat.com / show_bug.cgi
Third Party Advisory
santandersecurityresearch.github.io / blog/sshing_the_masses.html
ExploitThird Party Advisory
openssh.com / txt/release-9.8
Release NotesThird Party Advisory
qualys.com / 2024/07/01/cve-2024-6387/regresshion.txt
ExploitThird Party Advisory