Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

CVE-2024-6387 PoC — Openssh: regresshion - race condition in ssh allows rce/dos

Source
Associated Vulnerability
Title: Openssh: regresshion - race condition in ssh allows rce/dos (CVE-2024-6387)
Description:A security regression (CVE-2006-5051) was discovered in OpenSSH's server (sshd). There is a race condition which can lead sshd to handle some signals in an unsafe manner. An unauthenticated, remote attacker may be able to trigger it by failing to authenticate within a set time period.
Readme
# CVE-2024-6387 漏洞概述

## 描述

这是一个针对CVE-2024-6387的漏洞利用,目标是OpenSSH服务器(`sshd`)中的信号处理程序竞争条件。该漏洞存在于基于glibc的Linux系统上,允许远程执行代码并获取root权限,因为在`SIGALRM`处理程序中调用了不安全的异步信号函数。

## 漏洞细节

### 漏洞摘要

该漏洞利用了OpenSSH `sshd`中的`SIGALRM`处理程序竞争条件:
- **受影响版本**:OpenSSH 8.5p1到9.8p1。
- **漏洞利用**:由于`SIGALRM`处理程序中调用了不安全的异步信号函数,导致可以远程执行代码并获取root权限。
File Snapshot

Log in to view the POC file snapshot cached by Shenlong Bot

Log in to view
Remarks
    1. It is advised to access via the original source first.
    2. Local POC snapshots are reserved for subscribers — if the original source is unavailable, the local mirror is part of the paid plan.
    3. Mirroring, verifying, and maintaining this POC archive takes ongoing effort, so local snapshots are a paid feature. Your subscription keeps the archive online — thank you for the support. View subscription plans →