Zultys Security Advisory Notice - SAN24-006 Rev 1.0

Vulnerability in OpenSSH (CVE-2024-6409)

Severity: No Impact

Published: 2024-07-10

Updated: 2024-07-10

Revision: 1.0

Evaluated Products

MX-SE, MX-SE II, MX-E and MX-Virtual systems

Impacted Products

None

Affected Releases

Not applicable

Impacted 3rd Party Products

Not applicable

Introduction

On July 8, 2024 details of a vulnerability impacting OpenSSH was published in the National

Vulnerability Database under CVE-2024-6409. The vulnerability relates to a signal handler race condition which may be exploited. The vulnerability is similar to that published in CVE-2024-6387 / SAN24-005.

Description

The MX-SE, MX-SE II, MX-E and MX-Virtual products are not impacted.

Contact

If additional information is required contact support@zultys.com or your Authorized Zultys Channel Partner.