FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

OpenSSH -- Race condition resulting in potential remote code execution

Affected packages
openssh-portable < 9.7.p1_2,1
14.1 <= FreeBSD < 14.1_2
14.0 <= FreeBSD < 14.0_8
13.3 <= FreeBSD < 13.3_4
13.2 <= FreeBSD < 13.2_12

Details

VuXML ID f1a00122-3797-11ef-b611-84a93843eb75
Discovery 2024-07-01
Entry 2024-07-01
Modified 2024-09-20

The OpenSSH project reports:

A race condition in sshd(8) could allow remote code execution as root on non-OpenBSD systems.

References

CVE Name CVE-2024-6387
FreeBSD Advisory SA-24:04.openssh
URL https://www.openssh.com/security.html