CVE-2024-6387High· 8.1▾ MidnightPoC availableA security regression (CVE-2006-5051) was discovered in OpenSSH's server (sshd). There is a race condition which can lead sshd to handle some signals in an unsafe manner. An unauthenticated, remote attacker may be able to trigger it by f…
▾ Midnight zone — Critical, or high with PoC / in-the-wild
impact 44.6 · likelihood 19.9 · exploitation 12
A public proof-of-concept already exists for this vulnerability — see Exploit availability below.
Public exploit / PoC code seen in 2 sources. Availability, not in-the-wild use.
Exploit-prediction probability, daily snapshots since Aug 31.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
Last analysed / modified upstream
100%
Exploit-DB · 96 GitHub repos (last check)
A security regression (CVE-2006-5051) was discovered in OpenSSH's server (sshd). There is a race condition which can lead sshd to handle some signals in an unsafe manner. An unauthenticated, remote attacker may be able to trigger it by failing to authenticate within a set time period.
sma_6200_firmwaresma_7200_firmwareeos >= 4.32.0, <= 4.32.1fubuntu_linux = 23.10ubuntu_linux = 24.04almalinux = 9.0sma_6210_firmwaresma_7210_firmwaresma_8200v_firmwaresra_ex_7000_firmwarea1k_firmwarea70_firmwarea90_firmwarea700s_firmware8300_firmware8700_firmwarea400_firmwarec400_firmwarea250_firmware500f_firmwarec250_firmwarea800_firmwarec800_firmwarea900_firmwarea9500_firmwarec190_firmwarea150_firmwarea220_firmwarefas2720_firmwarefas2750_firmwarefas2820_firmwarebootstrap_osmacos >= 12.0, < 12.7.6macos >= 13.0, < 13.6.8macos >= 14.0, < 14.6openssh < 4.4openssh >= 8.6, <= 9.8openssh = 4.4openssh = 8.5openssh = 8.6openshift_container_platform = 4.0enterprise_linux = 9.0enterprise_linux_eus = 9.4enterprise_linux_for_arm_64 = 9.0_aarch64enterprise_linux_for_arm_64_eus = 9.4_aarch64enterprise_linux_for_ibm_z_systems = 9.0_s390xenterprise_linux_for_ibm_z_systems_eus = 9.4_s390xenterprise_linux_for_power_little_endian = 9.0_ppc64leenterprise_linux_for_power_little_endian_eus = 9.4_ppc64leenterprise_linux_server_aus = 9.4linux_enterprise_micro = 6.0debian_linux = 12.0ubuntu_linux = 22.04ubuntu_linux = 22.10ubuntu_linux = 23.04amazon_linux = 2023.0active_iq_unified_managere-series_santricity_os_controller >= 11.0.0, <= 11.70.2ontap = 9ontap_select_deploy_administration_utilityontap_tools = 9ontap_tools = 10freebsd = 13.2freebsd = 13.3freebsd = 14.0freebsd = 14.1netbsd <= 10.0.0Upgrade past the affected range:
macos 14.6openssh 4.4Connected by shared product, vendor, weakness, or advisory.
CVE-2025-26465Medium· 6.8A vulnerability was found in OpenSSH when the VerifyHostKeyDNS option is enabled
CVE-2021-41617High· 7.0sshd in OpenSSH 6.2 through 8.x before 8.8, when certain non-default configurations are used, allows privilege escalation because supplemental groups are not initialized as expected
CVE-2023-51384Medium· 5.5In ssh-agent in OpenSSH before 9.6, certain destination constraints can be incompletely applied
CVE-2023-28531Critical· 9.8ssh-add in OpenSSH before 9.3 adds smartcard keys to ssh-agent without the intended per-hop destination constraints
CVE-2025-61984Low· 3.6ssh in OpenSSH before 10.1 allows control characters in usernames that originate from certain possibly untrusted sources, potentially leading to code execution when a ProxyCommand is used
CVE-2025-21701High· 7.8In the Linux kernel, the following vulnerability has been resolved: net: avoid race between device unregistration and ethnl ops The following trace can be seen if a device is being unregistered while its number of channels are being mo…