A vulnerability in OpenSSH allows remote code execution with root privileges on servers with Glibc.
Qualys has identified a critical vulnerability (CVE-2024-6387) in OpenSSH, allowing remote code execution with root privileges without authentication. The vulnerability, code-named regreSSHion, occurs in the default configuration starting from OpenSSH 8.5 on systems with the standard Glibc library. The possibility of an attack has been demonstrated on a 32-bit system with Glibc with ASLR (Address Space Layout Randomization) protection enabled […]
