Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Security Measurement
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Insights
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Insights
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2024:4389 - Security Advisory
Issued:
2024-07-08
Updated:
2024-07-08

RHSA-2024:4389 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Important: openssh security update

Type/Severity

Security Advisory: Important

Red Hat Insights patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for openssh is now available for Red Hat Enterprise Linux 9.0 Update Services for SAP Solutions.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

OpenSSH is an SSH protocol implementation supported by a number of Linux, UNIX, and similar operating systems. It includes the core files necessary for both the OpenSSH client and server.

Security Fix(es):

  • openssh: Possible remote code execution due to a race condition in signal handling (CVE-2024-6387)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

Affected Products

  • Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.0 ppc64le
  • Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.0 x86_64
  • Red Hat Enterprise Linux for ARM 64 - 4 years of updates 9.0 aarch64
  • Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 9.0 s390x

Fixes

  • BZ - 2294604 - CVE-2024-6387 openssh: Possible remote code execution due to a race condition in signal handling

CVEs

  • CVE-2024-6387

References

  • https://access.redhat.com/security/updates/classification/#important
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.0

SRPM
openssh-8.7p1-12.el9_0.1.src.rpm SHA-256: b7e3f4d9dd81a83a93739cd5a7c0911826e47d1bcc4f3e07730a9bd1d030fc9b
ppc64le
openssh-8.7p1-12.el9_0.1.ppc64le.rpm SHA-256: a8371db33e846918a1dbf3ad7b39b2f90b475db7370ecbd0e5fade5626d49443
openssh-askpass-8.7p1-12.el9_0.1.ppc64le.rpm SHA-256: cf4cbf469b6fbbc7b899ea29e3a8df41aaa8f49619bfbaeecb7b835a4c69921e
openssh-askpass-debuginfo-8.7p1-12.el9_0.1.ppc64le.rpm SHA-256: 9ae6f43d5a00acb79436c07627dea7d237a79043a698505d75f7f3cdf976aa3d
openssh-askpass-debuginfo-8.7p1-12.el9_0.1.ppc64le.rpm SHA-256: 9ae6f43d5a00acb79436c07627dea7d237a79043a698505d75f7f3cdf976aa3d
openssh-clients-8.7p1-12.el9_0.1.ppc64le.rpm SHA-256: c260f3d941637d7ad8e9238b810e2d028aedbba6caa6241a940073f2f35185f7
openssh-clients-debuginfo-8.7p1-12.el9_0.1.ppc64le.rpm SHA-256: b21ab027f12002a24255e571e2e9ec5215c194b695dda351dc8cc7b5e38f0b32
openssh-clients-debuginfo-8.7p1-12.el9_0.1.ppc64le.rpm SHA-256: b21ab027f12002a24255e571e2e9ec5215c194b695dda351dc8cc7b5e38f0b32
openssh-debuginfo-8.7p1-12.el9_0.1.ppc64le.rpm SHA-256: 91f546f5125e17a5f6b9248ee3ad4ce7e79391767adf202172f185c2cb760ce4
openssh-debuginfo-8.7p1-12.el9_0.1.ppc64le.rpm SHA-256: 91f546f5125e17a5f6b9248ee3ad4ce7e79391767adf202172f185c2cb760ce4
openssh-debugsource-8.7p1-12.el9_0.1.ppc64le.rpm SHA-256: 4857eaeb19f932e1143a9918a66ffe2b749339e59283566cbd477d1f38af5e34
openssh-debugsource-8.7p1-12.el9_0.1.ppc64le.rpm SHA-256: 4857eaeb19f932e1143a9918a66ffe2b749339e59283566cbd477d1f38af5e34
openssh-keycat-8.7p1-12.el9_0.1.ppc64le.rpm SHA-256: bca89e0290f9d16c0e34e6ef8be17c8d6514b99fb5a01efe4401845d3a2cffd3
openssh-keycat-debuginfo-8.7p1-12.el9_0.1.ppc64le.rpm SHA-256: 37c745dd9f5c9d68e1c2b047c8104f48b565783a32d1858e58ea16df755a494b
openssh-keycat-debuginfo-8.7p1-12.el9_0.1.ppc64le.rpm SHA-256: 37c745dd9f5c9d68e1c2b047c8104f48b565783a32d1858e58ea16df755a494b
openssh-server-8.7p1-12.el9_0.1.ppc64le.rpm SHA-256: 28ee25dbf6de55cdd6fe92772616214b06b4436bdbf388942300ceb13044fd0f
openssh-server-debuginfo-8.7p1-12.el9_0.1.ppc64le.rpm SHA-256: bb19c6f08c29c5e89c01ac02a7eb58c0d4b152d7e2da4a61baaca8ee4019bd47
openssh-server-debuginfo-8.7p1-12.el9_0.1.ppc64le.rpm SHA-256: bb19c6f08c29c5e89c01ac02a7eb58c0d4b152d7e2da4a61baaca8ee4019bd47
pam_ssh_agent_auth-0.10.4-4.12.el9_0.1.ppc64le.rpm SHA-256: 3984b3a4f3d527c9dc313ddfa3b5a1686a8974d1fbc38cfada13b57e4dfd8b04
pam_ssh_agent_auth-debuginfo-0.10.4-4.12.el9_0.1.ppc64le.rpm SHA-256: e462f5c8978fe6173ffa6a79c328f049e2d37ee7777e805e79ce3a2cf64b2f32
pam_ssh_agent_auth-debuginfo-0.10.4-4.12.el9_0.1.ppc64le.rpm SHA-256: e462f5c8978fe6173ffa6a79c328f049e2d37ee7777e805e79ce3a2cf64b2f32

Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.0

SRPM
openssh-8.7p1-12.el9_0.1.src.rpm SHA-256: b7e3f4d9dd81a83a93739cd5a7c0911826e47d1bcc4f3e07730a9bd1d030fc9b
x86_64
openssh-8.7p1-12.el9_0.1.x86_64.rpm SHA-256: c59fcb28eed000330d66cbbb5ef6c870862b0247ffd520aad91a7a7296927de1
openssh-askpass-8.7p1-12.el9_0.1.x86_64.rpm SHA-256: 4ffcb74ee27a27160ba3c443944ee4bb705c4242e5c5e9b68959e303e3efc344
openssh-askpass-debuginfo-8.7p1-12.el9_0.1.x86_64.rpm SHA-256: ee77770a4a73b75f17ddcb5cf62db0cb1df47a13c544d70e21c8e17309a60cd1
openssh-askpass-debuginfo-8.7p1-12.el9_0.1.x86_64.rpm SHA-256: ee77770a4a73b75f17ddcb5cf62db0cb1df47a13c544d70e21c8e17309a60cd1
openssh-clients-8.7p1-12.el9_0.1.x86_64.rpm SHA-256: 4e190db7538e1353ee5101a307cd85b8a3988b562f4ca47f77eb9e664b738355
openssh-clients-debuginfo-8.7p1-12.el9_0.1.x86_64.rpm SHA-256: db0d826e3d26a504893df95c709481f2352631321018116b94da1427fff25278
openssh-clients-debuginfo-8.7p1-12.el9_0.1.x86_64.rpm SHA-256: db0d826e3d26a504893df95c709481f2352631321018116b94da1427fff25278
openssh-debuginfo-8.7p1-12.el9_0.1.x86_64.rpm SHA-256: fb7b9a36ef05a33bcf0ad9ecd30a1b87f75263ea25fc1f2525dbac585a3cd70d
openssh-debuginfo-8.7p1-12.el9_0.1.x86_64.rpm SHA-256: fb7b9a36ef05a33bcf0ad9ecd30a1b87f75263ea25fc1f2525dbac585a3cd70d
openssh-debugsource-8.7p1-12.el9_0.1.x86_64.rpm SHA-256: 494173f1f089ebfb5fbd78d34b602eed3f752cdd74ca5ce5211b2d75260f583d
openssh-debugsource-8.7p1-12.el9_0.1.x86_64.rpm SHA-256: 494173f1f089ebfb5fbd78d34b602eed3f752cdd74ca5ce5211b2d75260f583d
openssh-keycat-8.7p1-12.el9_0.1.x86_64.rpm SHA-256: 1dd49c0368dbec528062fa8a0d1e34b2cac87369aefd8731d10140786f5d5555
openssh-keycat-debuginfo-8.7p1-12.el9_0.1.x86_64.rpm SHA-256: 81431744ba60764913adfb3368b5f152f144c7d02f333c5175f3cf8638e02dd7
openssh-keycat-debuginfo-8.7p1-12.el9_0.1.x86_64.rpm SHA-256: 81431744ba60764913adfb3368b5f152f144c7d02f333c5175f3cf8638e02dd7
openssh-server-8.7p1-12.el9_0.1.x86_64.rpm SHA-256: 146cfeca6b129bf56949b46fcf703da250089d55dc90051eed95b392067a1ad3
openssh-server-debuginfo-8.7p1-12.el9_0.1.x86_64.rpm SHA-256: dd029acce22971924db6e6848a235d47201ebff41a57a216c9388bc2f5f74b07
openssh-server-debuginfo-8.7p1-12.el9_0.1.x86_64.rpm SHA-256: dd029acce22971924db6e6848a235d47201ebff41a57a216c9388bc2f5f74b07
pam_ssh_agent_auth-0.10.4-4.12.el9_0.1.x86_64.rpm SHA-256: e2a3502a60389ca40b17e83a86834326c26d5ba08ca1f93ca43e4c1235af16e9
pam_ssh_agent_auth-debuginfo-0.10.4-4.12.el9_0.1.x86_64.rpm SHA-256: fab4b5175cfc92d8a4c241dbf14f7f8954951a6b679abff552b2ef04644252c9
pam_ssh_agent_auth-debuginfo-0.10.4-4.12.el9_0.1.x86_64.rpm SHA-256: fab4b5175cfc92d8a4c241dbf14f7f8954951a6b679abff552b2ef04644252c9

Red Hat Enterprise Linux for ARM 64 - 4 years of updates 9.0

SRPM
openssh-8.7p1-12.el9_0.1.src.rpm SHA-256: b7e3f4d9dd81a83a93739cd5a7c0911826e47d1bcc4f3e07730a9bd1d030fc9b
aarch64
openssh-8.7p1-12.el9_0.1.aarch64.rpm SHA-256: 6f07c505024c4e6d296e7d6b649320a6e9a799de4567ea431e7ddece4de140ef
openssh-askpass-8.7p1-12.el9_0.1.aarch64.rpm SHA-256: e150060e848ce8523e7946e9b2782d2818e2dbaf1f1fa392954baa1896519273
openssh-askpass-debuginfo-8.7p1-12.el9_0.1.aarch64.rpm SHA-256: 91b75b86ef8be927723ab1aae303946757fe6f74d5f20dfe32b0fb3e559e1c75
openssh-askpass-debuginfo-8.7p1-12.el9_0.1.aarch64.rpm SHA-256: 91b75b86ef8be927723ab1aae303946757fe6f74d5f20dfe32b0fb3e559e1c75
openssh-clients-8.7p1-12.el9_0.1.aarch64.rpm SHA-256: aec3667e001255c17365affc9ed11cd1057f3249c563d9ac26922f93e1ab5239
openssh-clients-debuginfo-8.7p1-12.el9_0.1.aarch64.rpm SHA-256: 2c68c58ed7bc7a9e5c0e902b5520aeb398e6e07843630cbc11cfe363a4d30db7
openssh-clients-debuginfo-8.7p1-12.el9_0.1.aarch64.rpm SHA-256: 2c68c58ed7bc7a9e5c0e902b5520aeb398e6e07843630cbc11cfe363a4d30db7
openssh-debuginfo-8.7p1-12.el9_0.1.aarch64.rpm SHA-256: 56c9939bf677b568a1607ffb871abc8a3e0e680b9faf6f203193eece4acbd4ed
openssh-debuginfo-8.7p1-12.el9_0.1.aarch64.rpm SHA-256: 56c9939bf677b568a1607ffb871abc8a3e0e680b9faf6f203193eece4acbd4ed
openssh-debugsource-8.7p1-12.el9_0.1.aarch64.rpm SHA-256: 693921a19ea9f2164760c8f3bbaf2dd6996a0f739ee4592dc76f5c101daeddf3
openssh-debugsource-8.7p1-12.el9_0.1.aarch64.rpm SHA-256: 693921a19ea9f2164760c8f3bbaf2dd6996a0f739ee4592dc76f5c101daeddf3
openssh-keycat-8.7p1-12.el9_0.1.aarch64.rpm SHA-256: 36ab94d68980b034209bf689759bedc100243d34cf042e09283530a7483ecb91
openssh-keycat-debuginfo-8.7p1-12.el9_0.1.aarch64.rpm SHA-256: 32956acb5ab7f5551c1024d3c059a5875b799342821dde75da41217ac89037e5
openssh-keycat-debuginfo-8.7p1-12.el9_0.1.aarch64.rpm SHA-256: 32956acb5ab7f5551c1024d3c059a5875b799342821dde75da41217ac89037e5
openssh-server-8.7p1-12.el9_0.1.aarch64.rpm SHA-256: 72defa6b7d0f0b3892cada55fd7772ce1639122936afdedcd41983e3a2f33d0c
openssh-server-debuginfo-8.7p1-12.el9_0.1.aarch64.rpm SHA-256: 5dd89eb0f91167aca1906b680fb61d5c61da75e9767870ee0b320d3c5631daf8
openssh-server-debuginfo-8.7p1-12.el9_0.1.aarch64.rpm SHA-256: 5dd89eb0f91167aca1906b680fb61d5c61da75e9767870ee0b320d3c5631daf8
pam_ssh_agent_auth-0.10.4-4.12.el9_0.1.aarch64.rpm SHA-256: 5f52dcd61f6786263ad1baa8cc7fe3e8cb4d08c0b10f68b75e21e62b72bb789e
pam_ssh_agent_auth-debuginfo-0.10.4-4.12.el9_0.1.aarch64.rpm SHA-256: 7433051e7f2ebd8097745f5a76b823f8c87381bd02664a25662efdf0ccf49a3b
pam_ssh_agent_auth-debuginfo-0.10.4-4.12.el9_0.1.aarch64.rpm SHA-256: 7433051e7f2ebd8097745f5a76b823f8c87381bd02664a25662efdf0ccf49a3b

Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 9.0

SRPM
openssh-8.7p1-12.el9_0.1.src.rpm SHA-256: b7e3f4d9dd81a83a93739cd5a7c0911826e47d1bcc4f3e07730a9bd1d030fc9b
s390x
openssh-8.7p1-12.el9_0.1.s390x.rpm SHA-256: ce8f266e8305572465dc6808134be75fc49000d230ca9a2619987f612c70bc6e
openssh-askpass-8.7p1-12.el9_0.1.s390x.rpm SHA-256: 8592cc75ea556b2b24c4ac1230f8d1135a004b39e50e49a75fde821cc694ed7d
openssh-askpass-debuginfo-8.7p1-12.el9_0.1.s390x.rpm SHA-256: 7c35801af02b20708da5650f9c5de0c05b23b1f5ed28a625276345bcc2dd0a92
openssh-askpass-debuginfo-8.7p1-12.el9_0.1.s390x.rpm SHA-256: 7c35801af02b20708da5650f9c5de0c05b23b1f5ed28a625276345bcc2dd0a92
openssh-clients-8.7p1-12.el9_0.1.s390x.rpm SHA-256: d12d6c7914c9bc361bedfbf6ebdbe317e2b939f553a6582c7be2263fdc3d5ffb
openssh-clients-debuginfo-8.7p1-12.el9_0.1.s390x.rpm SHA-256: 1669539ba9ebde12e706bd6406e16dd60984253814738e5b8f6016cf20fbceb8
openssh-clients-debuginfo-8.7p1-12.el9_0.1.s390x.rpm SHA-256: 1669539ba9ebde12e706bd6406e16dd60984253814738e5b8f6016cf20fbceb8
openssh-debuginfo-8.7p1-12.el9_0.1.s390x.rpm SHA-256: 537cbb671f6a850aa534941a6be659068c6e69de390b697067eaad894513f2bb
openssh-debuginfo-8.7p1-12.el9_0.1.s390x.rpm SHA-256: 537cbb671f6a850aa534941a6be659068c6e69de390b697067eaad894513f2bb
openssh-debugsource-8.7p1-12.el9_0.1.s390x.rpm SHA-256: 6665578ebdd1214793a2b438e1a76a9ee6a23af09435ac955d6bdcbe5d61c763
openssh-debugsource-8.7p1-12.el9_0.1.s390x.rpm SHA-256: 6665578ebdd1214793a2b438e1a76a9ee6a23af09435ac955d6bdcbe5d61c763
openssh-keycat-8.7p1-12.el9_0.1.s390x.rpm SHA-256: f0f1d4fe588a84820528af88d8b56102bf745462f0eb9d178e25648332d87db3
openssh-keycat-debuginfo-8.7p1-12.el9_0.1.s390x.rpm SHA-256: 6212644e489b586267a5a72551743517f25beeb52a8505fe43640babf9d13c75
openssh-keycat-debuginfo-8.7p1-12.el9_0.1.s390x.rpm SHA-256: 6212644e489b586267a5a72551743517f25beeb52a8505fe43640babf9d13c75
openssh-server-8.7p1-12.el9_0.1.s390x.rpm SHA-256: 2f2e721684d893c90ee08dae39f19e064ecd5ca9e6478cf52db005f5c51959e3
openssh-server-debuginfo-8.7p1-12.el9_0.1.s390x.rpm SHA-256: f0c78b2437672a63c9542bf86679386cec330d91124f830ec697869138a8da1f
openssh-server-debuginfo-8.7p1-12.el9_0.1.s390x.rpm SHA-256: f0c78b2437672a63c9542bf86679386cec330d91124f830ec697869138a8da1f
pam_ssh_agent_auth-0.10.4-4.12.el9_0.1.s390x.rpm SHA-256: 71e2f14fdaf13f10b69b288c525a4e70b91f4ce1fa27049f9ef0e174129ad337
pam_ssh_agent_auth-debuginfo-0.10.4-4.12.el9_0.1.s390x.rpm SHA-256: 2e44cd13ed878c2a014c7e1eba2f58dcb1df212cec96b26a8d06bd0c4f46d342
pam_ssh_agent_auth-debuginfo-0.10.4-4.12.el9_0.1.s390x.rpm SHA-256: 2e44cd13ed878c2a014c7e1eba2f58dcb1df212cec96b26a8d06bd0c4f46d342

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat X (formerly Twitter)

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat, Inc.

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility