RegreSSHion bug in OpenSSH - check your servers!

A nasty CVE was posted yesterday https://openwall.com/lists/oss-security/2024/07/01/3

This vulnerability is exploitable remotely and grants unauthenticated root access to your server if pulled off.

Most OS distros have already pushed patches so it is wise to check if you have an affected version and update accordingly.
Upgrading:
openssh x86_64 8.7p1-38.el9.alma.2 baseos 457 k
openssh-clients x86_64 8.7p1-38.el9.alma.2 baseos 712 k
openssh-server x86_64 8.7p1-38.el9.alma.2 baseos 458 k


Cheers.
 
For Cpanel users there is a list:

This only affects EL9 based and newer Ubuntu operating system, so e.g. AlmaLinux 8 is not affected.

EL6 Based SystemsNot Affected
EL7 Based SystemsNot Affected
EL8 Based SystemsNot Affected
AlmaLinux 9PatchedAlmaLinux OS 9 - CVE-2024-6387: regreSSHion
Rocky Linux 9PatchedRocky Linux 9 - CVE-2024-6387: regreSSHion
Ubuntu 20.04Not Affected
Ubuntu 22.04PatchedUSN-6859-1: OpenSSH vulnerability
 
Back
Top Bottom