Full exploit chain for OpenSSH regreSSHion (CVE-2024-6387) released publicly

tetsuoai · x · 2026-08-28

A security researcher has published a full exploit for OpenSSH CVE-2024-6387 (regreSSHion), including timing primitive, heap groom and a complete ROP chain. The vulnerability is a signal-handler race condition in sshd allowing unauthenticated remote code execution as root on glibc-based Linux. The author says an early boilerplate pushed to Git two years ago was forked by hundreds of accounts within minutes and pulled; with the flaw widely discussed and patched, it is now public for researchers. Qualys blog provides risk and mitigation details.

Original post →

More from Safety

Safety channel →