
regreSSHion (CVE-2024-6387): Unauthenticated Remote Code Execution Vulnerability in OpenSSH
Vulnerability
regreSSHion (CVE-2024-6387) is an unauthenticated remote code execution (RCE) vulnerability in the OpenSSH program, similar to the CVE-2006-5051 vulnerability. It affects OpenSSH versions 8.5p1 to 9.8p1 as well as versions prior to 4.4p1. This vulnerability is due to insecure function calls in the handling of asynchronous signals. The analysis focuses on 32-bit GNU/Linux operating systems.