漏洞描述
A race condition vulnerability was discovered in how signals are handled by OpenSSH's server (sshd). If a remote attacker does not authenticate within a set time period, then sshd's SIGALRM handler is called asynchronously. However, this signal handler calls various functions that are not async-signal-safe, for example, syslog(). As a consequence of a successful attack, in the worst case scenario, an attacker may be able to perform a remote code execution (RCE) as an unprivileged user running the sshd server.
影响产品
暂无结构化产品信息。
修复建议
建议关注厂商安全公告,及时升级至已修复版本,并结合实际资产暴露情况采取缓解措施。
参考链接
access.redhat.comhttps://access.redhat.com/errata/RHSA-2024:4955↗sig-security.rocky.pagehttps://sig-security.rocky.page/issues/CVE-2024-6409/↗almalinux.orghttps://almalinux.org/blog/2024-07-09-cve-2024-6409/↗access.redhat.comhttps://access.redhat.com/errata/RHSA-2024:4910↗access.redhat.comhttps://access.redhat.com/errata/RHSA-2024:4613↗www.openwall.comhttp://www.openwall.com/lists/oss-security/2024/07/09/2↗access.redhat.comhttps://access.redhat.com/errata/RHSA-2024:4716↗bugzilla.redhat.comhttps://bugzilla.redhat.com/show_bug.cgi?id=2295085↗ubuntu.comhttps://ubuntu.com/security/CVE-2024-6409↗security-tracker.debian.orghttps://security-tracker.debian.org/tracker/CVE-2024-6409↗bugzilla.suse.comhttps://bugzilla.suse.com/show_bug.cgi?id=1227217↗www.openwall.comhttp://www.openwall.com/lists/oss-security/2024/07/09/5↗explore.alas.aws.amazon.comhttps://explore.alas.aws.amazon.com/CVE-2024-6409.html↗access.redhat.comhttps://access.redhat.com/security/cve/CVE-2024-6409↗www.openwall.comhttp://www.openwall.com/lists/oss-security/2024/07/10/1↗github.comhttps://github.com/openela-main/openssh/commit/c00da7741d42029e49047dd89e266d91dcfbffa0↗access.redhat.comhttps://access.redhat.com/errata/RHSA-2024:4457↗access.redhat.comhttps://access.redhat.com/errata/RHSA-2024:5444↗www.openwall.comhttp://www.openwall.com/lists/oss-security/2024/07/08/2↗www.openwall.comhttp://www.openwall.com/lists/oss-security/2024/07/10/2↗access.redhat.comhttps://access.redhat.com/errata/RHSA-2024:4960↗security.netapp.comhttps://security.netapp.com/advisory/ntap-20240712-0003/↗www.suse.comhttps://www.suse.com/security/cve/CVE-2024-6409.html↗