CVE-2024-6387
HIGH 8.1EPSS 99.5%
A security regression (CVE-2006-5051) was discovered in OpenSSH's server (sshd). There is a race condition which can lead sshd to handle some signals in an unsafe manner. An unauthenticated, remote attacker may be able to trigger it by failing to authenticate within a set time period.
- CVSS v3.1
- 8.1 HIGH
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H - CVSS v3.1
- 8.1 HIGH
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H - EPSS
- 99.51% chance of exploitation in the next 30 days, 100th percentile
- Published
- 2024-07-01
- Updated
- 2026-09-01
Proof-of-concept exploits (79)
- zgzhang/cve-2024-6387-poc496★ · 2024-07-01
- https://santandersecurityresearch.github.io/blog/sshing_the_masses.html
- https://www.vicarius.io/vsociety/posts/regresshion-an-openssh-regression-error-cve-2024-6…
- 0x4D31/cve-2024-6387_hassh10★ · 2024-07-05
- 3yujw7njai/CVE-2024-638710★ · 2024-07-02
- 4lxprime/regreSSHive0★ · 2024-07-04
- AiGptCode/ssh_exploiter_CVE-2024-638710★ · 2024-07-04
- AiK1d/CVE-2024-638710★ · 2024-07-02
- AzrDll/CVE-2024-63874★ · 2025-01-20
- DimaMend/cve-2024-6387-poc0★ · 2024-07-10
- FerasAlrimali/CVE-2024-6387-POC0★ · 2024-07-01
- Jhonsonwannaa/CVE-2024-63870★ · 2025-02-22
- Karmakstylez/CVE-2024-6387194★ · 2024-08-22
- MrR0b0t19/CVE-2024-6387-Exploit-POC4★ · 2024-07-02
- MrR0b0t19/CVE-6387-SSH-v22★ · 2024-07-11
- Mufti22/CVE-2024-6387-checkher0★ · 2024-07-02
- P4x1s/CVE-2024-638710★ · 2024-07-02
- PrincipalAnthony/CVE-2024-6387-Updated-x64bit3★ · 2024-07-02
- R4Tw1z/CVE-2024-63871★ · 2024-07-02
- Symbolexe/CVE-2024-63873★ · 2024-07-04
- TAM-K592/CVE-2024-638714★ · 2024-07-02
- ThatNotEasy/CVE-2024-63873★ · 2024-07-15
- ThemeHackers/CVE-2024-63874★ · 2024-08-22
- YassDEV221608/CVE-2024-63870★ · 2024-11-24
- YassDEV221608/CVE-2024-6387_PoC17★ · 2025-01-04
- acrono/cve-2024-6387-poc379★ · 2024-07-01
- ahlfors/CVE-2024-63872★ · 2024-07-02
- alex14324/ssh_poc20241★ · 2024-07-31
- anhvutuan/CVE-2024-6387-poc-12★ · 2024-07-11
- asterictnl-lvdw/CVE-2024-6387194★ · 2024-08-22
- awusan125/test_for63873★ · 2024-12-22
- beac0n/ruroco555★ · 2026-07-26
- d0rb/CVE-2024-638752★ · 2024-07-04
- dawnl3ss/CVE-2024-63870★ · 2024-07-02
- dream434/CVE-2024-63870★ · 2025-02-22
- getdrive/CVE-2024-6387-PoC24★ · 2024-07-01
- grupooruss/CVE-2024-63872★ · 2024-07-02
- grupooruss/CVE-2024-6387-Tester2★ · 2024-07-02
- h3x0crypt/SpicyShell1★ · 2024-07-02
- hssmo/cve-2024-6387_AImade0★ · 2024-07-02
- identity-threat-labs/Article-RegreSSHion-CVE-2024-63871★ · 2024-08-29
- imv7/CVE-2024-63870★ · 2024-07-05
- invaderslabs/regreSSHion-CVE-2024-6387-0★ · 2024-07-04
- jack0we/CVE-2024-63870★ · 2024-07-01
- jocker2410/CVE-2024-6387_poc0★ · 2024-08-04
- l-urk/CVE-2024-638712★ · 2024-10-19
- l-urk/CVE-2024-6387-L12★ · 2024-10-19
- l0n3m4n/CVE-2024-6387112★ · 2024-07-05
- lala-amber/CVE-2024-63874★ · 2024-07-04
- lflare/cve-2024-6387-poc129★ · 2024-07-25
- moften/regreSSHion-CVE-2024-63870★ · 2025-09-08
- mrmtwoj/CVE-2024-63870★ · 2024-07-09
- muyuanlove/CVE-2024-6387fixshell2★ · 2024-07-02
- n1cks0n/Test_CVE-2024-63871★ · 2024-07-02
- no-one-sec/CVE-2024-63870★ · 2024-07-02
- paradessia/CVE-2024-6387-nmap4★ · 2024-07-02
- passwa11/cve-2024-6387-poc1★ · 2024-07-01
- prelearn-code/CVE-2024-63872★ · 2024-07-25
- rumochnaya/openssh-cve-2024-6387.sh1★ · 2024-07-02
- s1d6point7bugcrowd/CVE-2024-6387-Race-Condition-in-Signal-Handling-for-OpenSSH0★ · 2024-08-19
- shamo0/CVE-2024-6387_PoC1★ · 2024-07-02
- sms2056/CVE-2024-63870★ · 2024-07-04
- stephenmuema/regreSSHion0★ · 2024-08-02
- sxlmnwb/CVE-2024-638721★ · 2024-07-03
- t3rry327/cve-2024-6387-poc0★ · 2024-07-03
- th3gokul/CVE-2024-63874★ · 2024-07-02
- thegenetic/CVE-2024-6387-exploit13★ · 2024-07-02
- xonoxitron/regreSSHion67★ · 2024-07-02
- 7etsuo/cve-2024-6387-poc
- HadesNull123/CVE-2024-6387_Check
- devarshishimpi/CVE-2024-6387-Check
- hasan8babiker/CVE-2024-6387
- kaleth4/CVE-2024-6387
- kinu404/CVE-2024-6387
- particle99/CVE-2024-6387-POC
- vuducmanhno100-cloud/CVE-2024-6387
- evilbotnet/ilovemalware
- hackingyseguridad/ssha
- jasonnorman66994-dot/sovereign-command-center