OpenSSH: race condition in sshd allows remote code execution
OpenSSH: race condition in sshd allows remote code execution
A severe vulnerability in OpenSSH, dubbed "regreSSHion" (CVE-2024-6387), has been discovered by the Qualys Threat Research Unit, potentially exposing
I always use my ssh server for remote code execution.
57 0 Replytechnically the truth!
19 0 Reply
Last I read about it it required connecting for 6-7 hours continuously on 32bit systems, and it's unknown how long it would take on 64bit.
14 0 ReplyYeah, exactly. Very impracticable.
4 0 ReplyBut, eventually exploitable is still a pretty major concern for anybody who has systems running longer than a few days at a time.
6 0 ReplyReminds me of the node-ip guy making thn repo read only because of amateur researchers filling up cve s
2 0 Reply
musl isn't vulnerable, as per https://fosstodon.org/@musl/112711796005712271
12 1 Reply