Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2024-6409

38
FAUCET Score

CVE-2024-6409 is a race condition vulnerability in OpenSSH's server (sshd) that can lead to remote code execution (RCE) as an unprivileged user. This occurs when an unauthenticated remote attacker triggers sshd's SIGALRM handler, which then calls non-async-signal-safe functions. With a CVSS score of 7.0 (HIGH) and a high EPSS score, this vulnerability presents a significant risk due to its network-based attack vector and high impact on confidentiality, integrity, and availability. While there is no public exploit code or active exploitation reported, the vulnerability has garnered community attention and media coverage, indicating a potential for future exploitation.

Impacted Technologies

VendorProductVersion(s)CPE
Red HatRed Hat Enterprise Linux 9
Range not provided by sourceCNA affecteddefault affected
Red HatRed Hat Enterprise Linux 9.0 Update Services For SAP Solutions
Range not provided by sourceCNA affecteddefault affected
Red HatRed Hat Enterprise Linux 9.2 Extended Update Support
Range not provided by sourceCNA affecteddefault affected
Red HatRed Hat OpenShift Container Platform 4.13
Range not provided by sourceCNA affecteddefault affected
Red HatRed Hat OpenShift Container Platform 4.14
Range not provided by sourceCNA affecteddefault affected

CVSS Data

CVSS version used by this source: 3.1

7.0HIGH

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:H

Attack Vector
NETWORK
Attack Complexity
HIGH
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
LOW
Integrity Impact
LOW
Availability Impact
HIGH
Exploitability Score
2.2
Impact Score
4.7
CvssVersion
3.1

Exploit Intelligence

EPSS Score
27.93%
Probability of exploitation in next 30 days
EPSS Percentile
97.9%
Percentile rank of EPSS score among Peer Group
As of 2026-07-26
Model: v2026.06.15
This CVE's current EPSS score of 0.2793 is in the 92nd percentile among its peer group of 8,915 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.

Media Mentions

The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (7)

redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 9Fixed in: openssh-0:8.7p1-38.el9_4.4
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 9.0 Update Services for SAP SolutionsFixed in: openssh-0:8.7p1-12.el9_0.3
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 9.2 Extended Update SupportFixed in: openssh-0:8.7p1-30.el9_2.7
View patch
redhatpatch availablevia redhat_api
Product: Red Hat OpenShift Container Platform 4.13Fixed in: rhcos-413.92.202408122222-0
View patch
redhatpatch availablevia redhat_api
Product: Red Hat OpenShift Container Platform 4.14Fixed in: rhcos-414.92.202407300859-0
View patch
redhatpatch availablevia redhat_api
Product: Red Hat OpenShift Container Platform 4.15Fixed in: rhcos-415.92.202407301159-0
View patch
redhatpatch availablevia redhat_api
Product: Red Hat OpenShift Container Platform 4.16Fixed in: rhcos-416.94.202407171205-0
View patch

Vendor Advisories (1)

redhatCVE-2024-6409Moderate

openssh: Possible remote code execution due to a race condition in signal handling affecting Red Hat Enterprise Linux 9

Jul 8, 2024

References

almalinux.org / blog/2024-07-09-cve-2024-6409
bugzilla.suse.com / show_bug.cgi
explore.alas.aws.amazon.com / CVE-2024-6409.html
github.com / openela-main/openssh/commit/c00da7741d42029e49047dd89e266d91dcfbffa0
security.netapp.com / advisory/ntap-20240712-0003
security-tracker.debian.org / tracker/CVE-2024-6409
sig-security.rocky.page / issues/CVE-2024-6409
ubuntu.com / security/CVE-2024-6409
suse.com / security/cve/CVE-2024-6409.html
openwall.com / lists/oss-security/2024/07/08/2
openwall.com / lists/oss-security/2024/07/09/2
openwall.com / lists/oss-security/2024/07/09/5
openwall.com / lists/oss-security/2024/07/10/1
openwall.com / lists/oss-security/2024/07/10/2
access.redhat.com / errata/RHSA-2024:4457
access.redhat.com / errata/RHSA-2024:4613
access.redhat.com / errata/RHSA-2024:4716
access.redhat.com / errata/RHSA-2024:4910
access.redhat.com / errata/RHSA-2024:4955
access.redhat.com / errata/RHSA-2024:4960
access.redhat.com / errata/RHSA-2024:5444
access.redhat.com / security/cve/CVE-2024-6409
bugzilla.redhat.com / show_bug.cgi