Loading...
Loading...
Browse all stories on DeepNewz
VisitCVE-2024-6387: Critical OpenSSH Flaw Exposes Millions of Linux Systems to RCE
Jul 1, 2024, 12:27 PM
A critical vulnerability identified as CVE-2024-6387 has been discovered in OpenSSH, affecting glibc-based Linux systems. Dubbed 'regreSSHion', this flaw allows unauthenticated remote code execution (RCE) with root privileges. The vulnerability is present in Portable OpenSSH versions from 8.5p1 to 9.7p1. It is estimated that approximately 14 million servers and around 700K Linux boxes are at risk. Security experts urge administrators to apply the latest patches immediately to mitigate the risk. This is the first major OpenSSH vulnerability discovered in nearly 20 years, and it was reintroduced almost four years ago. Exploiting the flaw can take between 6-8 hours in lab conditions.
View original story
Markets
Yes • 50%
No • 50%
Reports from credible cybersecurity firms or news outlets
Yes • 50%
No • 50%
Official announcements from major Linux distributions (e.g., Ubuntu, Fedora, Debian, Red Hat)
Yes • 50%
No • 50%
Reports from cybersecurity firms or industry surveys
Fortune 500 Company • 25%
Government Agency • 25%
Other • 25%
Educational Institution • 25%
Official breach reports or credible news sources
70-90% • 25%
More than 90% • 25%
Less than 50% • 25%
50-70% • 25%
Industry surveys and reports by cybersecurity firms
More than $1B • 25%
$100M-$500M • 25%
$500M-$1B • 25%
Less than $100M • 25%
Reports from cybersecurity firms or financial analysts