Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Security Measurement
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Insights
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Insights
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2024:4910 - Security Advisory
Issued:
2024-07-30
Updated:
2024-07-30

RHSA-2024:4910 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Moderate: openssh security update

Type/Severity

Security Advisory: Moderate

Red Hat Insights patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for openssh is now available for Red Hat Enterprise Linux 9.0 Update Services for SAP Solutions.

Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

OpenSSH is an SSH protocol implementation supported by a number of Linux, UNIX, and similar operating systems. It includes the core files necessary for both the OpenSSH client and server.

Security Fix(es):

  • openssh: Possible remote code execution due to a race condition in signal handling affecting Red Hat Enterprise Linux 9 (CVE-2024-6409)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

Affected Products

  • Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.0 ppc64le
  • Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.0 x86_64
  • Red Hat Enterprise Linux for ARM 64 - 4 years of updates 9.0 aarch64
  • Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 9.0 s390x

Fixes

  • BZ - 2295085 - CVE-2024-6409 openssh: Possible remote code execution due to a race condition in signal handling affecting Red Hat Enterprise Linux 9

CVEs

  • CVE-2024-6409

References

  • https://access.redhat.com/security/updates/classification/#moderate
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.0

SRPM
openssh-8.7p1-12.el9_0.3.src.rpm SHA-256: bdddf97a5e4747e4d628ec1d55d2592bff4fd28380a77459ac987cba78668667
ppc64le
openssh-8.7p1-12.el9_0.3.ppc64le.rpm SHA-256: 1093f0874d57aa36b10ca611b00201e79ff8149b033f0a4d7dc80ebab884efc2
openssh-askpass-8.7p1-12.el9_0.3.ppc64le.rpm SHA-256: 54af517fc5b47e52ed9d8bfef6d74458819922927b5ba92bf4d153855d701854
openssh-askpass-debuginfo-8.7p1-12.el9_0.3.ppc64le.rpm SHA-256: 6a8397bfa61f165f84e0af90c09a56aa22b574274ba53d485a761611f4e574e2
openssh-askpass-debuginfo-8.7p1-12.el9_0.3.ppc64le.rpm SHA-256: 6a8397bfa61f165f84e0af90c09a56aa22b574274ba53d485a761611f4e574e2
openssh-clients-8.7p1-12.el9_0.3.ppc64le.rpm SHA-256: 8ff4b85214d53fd326a1db026f6b8de97270a02adca3bc88223030fb9a9e2ffe
openssh-clients-debuginfo-8.7p1-12.el9_0.3.ppc64le.rpm SHA-256: 8a8f1d740ce9c958b277785da886cb0ef0c5366c4740ac8350f928d6ecc3568a
openssh-clients-debuginfo-8.7p1-12.el9_0.3.ppc64le.rpm SHA-256: 8a8f1d740ce9c958b277785da886cb0ef0c5366c4740ac8350f928d6ecc3568a
openssh-debuginfo-8.7p1-12.el9_0.3.ppc64le.rpm SHA-256: af2e85ef990f4b3e7dfe1511ef10e643f8c6ca31ea8160b8600caca8e3803395
openssh-debuginfo-8.7p1-12.el9_0.3.ppc64le.rpm SHA-256: af2e85ef990f4b3e7dfe1511ef10e643f8c6ca31ea8160b8600caca8e3803395
openssh-debugsource-8.7p1-12.el9_0.3.ppc64le.rpm SHA-256: f80f39b55b3116031dc7112a0d3f49af9e4de4d98f3cb9454c385d70b3ebcf20
openssh-debugsource-8.7p1-12.el9_0.3.ppc64le.rpm SHA-256: f80f39b55b3116031dc7112a0d3f49af9e4de4d98f3cb9454c385d70b3ebcf20
openssh-keycat-8.7p1-12.el9_0.3.ppc64le.rpm SHA-256: 535610974d29a755cd7d7cc88599884f987c3801633ccb278672ee8226cb19d8
openssh-keycat-debuginfo-8.7p1-12.el9_0.3.ppc64le.rpm SHA-256: 0fb186cfb0066d1f9b36efa8350d7b1018295ed7570a4782cbfbe53ec295684e
openssh-keycat-debuginfo-8.7p1-12.el9_0.3.ppc64le.rpm SHA-256: 0fb186cfb0066d1f9b36efa8350d7b1018295ed7570a4782cbfbe53ec295684e
openssh-server-8.7p1-12.el9_0.3.ppc64le.rpm SHA-256: 461d2cdeaa904652e9c812348c98beb82cf2e041c77a5d52ee5917e046dd9d0d
openssh-server-debuginfo-8.7p1-12.el9_0.3.ppc64le.rpm SHA-256: a2bc4510defe04e0055669a65bb54096a32717ebddeaa4ee89f1c95570b33430
openssh-server-debuginfo-8.7p1-12.el9_0.3.ppc64le.rpm SHA-256: a2bc4510defe04e0055669a65bb54096a32717ebddeaa4ee89f1c95570b33430
pam_ssh_agent_auth-0.10.4-4.12.el9_0.3.ppc64le.rpm SHA-256: 40b3860f994f7a02afd720cbb76d01d92f4b4b9375b6dd77f457b53eafa68ec7
pam_ssh_agent_auth-debuginfo-0.10.4-4.12.el9_0.3.ppc64le.rpm SHA-256: 65af3a978068fd9416659af7ce8d96a8fdc9285d68d7683a960c5bfdc8fad141
pam_ssh_agent_auth-debuginfo-0.10.4-4.12.el9_0.3.ppc64le.rpm SHA-256: 65af3a978068fd9416659af7ce8d96a8fdc9285d68d7683a960c5bfdc8fad141

Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.0

SRPM
openssh-8.7p1-12.el9_0.3.src.rpm SHA-256: bdddf97a5e4747e4d628ec1d55d2592bff4fd28380a77459ac987cba78668667
x86_64
openssh-8.7p1-12.el9_0.3.x86_64.rpm SHA-256: 3722562c3d22329c32d3d29cc57cc16e947dbe8f636e9063ee851732a301f74b
openssh-askpass-8.7p1-12.el9_0.3.x86_64.rpm SHA-256: 210955167ca94f42529ceaff3a5959a76e76603e5b14ae22228659d1a75fe0ed
openssh-askpass-debuginfo-8.7p1-12.el9_0.3.x86_64.rpm SHA-256: 9f0823ba8d7bdcd60a54625d6cc040e8501c031f7b2ca467e9e6190983d315be
openssh-askpass-debuginfo-8.7p1-12.el9_0.3.x86_64.rpm SHA-256: 9f0823ba8d7bdcd60a54625d6cc040e8501c031f7b2ca467e9e6190983d315be
openssh-clients-8.7p1-12.el9_0.3.x86_64.rpm SHA-256: f1723172c5d45aa48f105ee5bbff803cdd73744d673e39139c1c2d1a7ba1f8fa
openssh-clients-debuginfo-8.7p1-12.el9_0.3.x86_64.rpm SHA-256: e65156d30bc3df38b62c7d8a4a131552134689a0856d28db5ac4a75db4c981cd
openssh-clients-debuginfo-8.7p1-12.el9_0.3.x86_64.rpm SHA-256: e65156d30bc3df38b62c7d8a4a131552134689a0856d28db5ac4a75db4c981cd
openssh-debuginfo-8.7p1-12.el9_0.3.x86_64.rpm SHA-256: 3b012f442895f46abc9a1cc818b5c62c42909d95561a34ca62f14a724eae3904
openssh-debuginfo-8.7p1-12.el9_0.3.x86_64.rpm SHA-256: 3b012f442895f46abc9a1cc818b5c62c42909d95561a34ca62f14a724eae3904
openssh-debugsource-8.7p1-12.el9_0.3.x86_64.rpm SHA-256: 72acedc7e7560c2d5f62470908f20a001e15b742c27423674494dfdf2384799b
openssh-debugsource-8.7p1-12.el9_0.3.x86_64.rpm SHA-256: 72acedc7e7560c2d5f62470908f20a001e15b742c27423674494dfdf2384799b
openssh-keycat-8.7p1-12.el9_0.3.x86_64.rpm SHA-256: 92b2a0aea26b36bd17aedb30ce488320a8ba06638d6cacc551541b904b90778c
openssh-keycat-debuginfo-8.7p1-12.el9_0.3.x86_64.rpm SHA-256: b15b3663eaba04f8371d3330ad67a6ebfc1e4b2e4faa85fc3dda6eaad96e93b3
openssh-keycat-debuginfo-8.7p1-12.el9_0.3.x86_64.rpm SHA-256: b15b3663eaba04f8371d3330ad67a6ebfc1e4b2e4faa85fc3dda6eaad96e93b3
openssh-server-8.7p1-12.el9_0.3.x86_64.rpm SHA-256: 9bd21c587c7013ae712b46b48dc61d74468fa1445cf4b96d3137c458d62a420e
openssh-server-debuginfo-8.7p1-12.el9_0.3.x86_64.rpm SHA-256: 5b90ddaf2cf7b95a28b6f97a4f9c1f3412e7ebc6cd9ff797da7be93540ad8356
openssh-server-debuginfo-8.7p1-12.el9_0.3.x86_64.rpm SHA-256: 5b90ddaf2cf7b95a28b6f97a4f9c1f3412e7ebc6cd9ff797da7be93540ad8356
pam_ssh_agent_auth-0.10.4-4.12.el9_0.3.x86_64.rpm SHA-256: 501bb4fa93f99871ce10040a95ef228cea6053b7359c6983ac68440a333fe3a9
pam_ssh_agent_auth-debuginfo-0.10.4-4.12.el9_0.3.x86_64.rpm SHA-256: 03af5dca40bc61868afaac5bec7904d7e552d314f7d7ef7babd12f0c883a4f1f
pam_ssh_agent_auth-debuginfo-0.10.4-4.12.el9_0.3.x86_64.rpm SHA-256: 03af5dca40bc61868afaac5bec7904d7e552d314f7d7ef7babd12f0c883a4f1f

Red Hat Enterprise Linux for ARM 64 - 4 years of updates 9.0

SRPM
openssh-8.7p1-12.el9_0.3.src.rpm SHA-256: bdddf97a5e4747e4d628ec1d55d2592bff4fd28380a77459ac987cba78668667
aarch64
openssh-8.7p1-12.el9_0.3.aarch64.rpm SHA-256: e8371dae0c8559299d0ef67af04e20cf96dd6ce10c9a24e6427bdb9d01da2d24
openssh-askpass-8.7p1-12.el9_0.3.aarch64.rpm SHA-256: 90809eedd7fd451521ba91b7dca63a2bc59641282ac37ddee78efc2fcdda4ee5
openssh-askpass-debuginfo-8.7p1-12.el9_0.3.aarch64.rpm SHA-256: 63cc56638b7afaa4ca2f2092f914be1253f090cc5240787e81cbf71ad83d61b9
openssh-askpass-debuginfo-8.7p1-12.el9_0.3.aarch64.rpm SHA-256: 63cc56638b7afaa4ca2f2092f914be1253f090cc5240787e81cbf71ad83d61b9
openssh-clients-8.7p1-12.el9_0.3.aarch64.rpm SHA-256: b3dd8be2ab87b893adea9c51b3c9cceafbbbc1285663e3d1a61110b736444bd3
openssh-clients-debuginfo-8.7p1-12.el9_0.3.aarch64.rpm SHA-256: 0fd09d94fb4ef2204700a60d708fd2b793ae43519d32ee38845f407fa9dbd3bb
openssh-clients-debuginfo-8.7p1-12.el9_0.3.aarch64.rpm SHA-256: 0fd09d94fb4ef2204700a60d708fd2b793ae43519d32ee38845f407fa9dbd3bb
openssh-debuginfo-8.7p1-12.el9_0.3.aarch64.rpm SHA-256: fd1de7c98314484d2c1a837ab5592527a125e7f54be991d271e517a4d3190d46
openssh-debuginfo-8.7p1-12.el9_0.3.aarch64.rpm SHA-256: fd1de7c98314484d2c1a837ab5592527a125e7f54be991d271e517a4d3190d46
openssh-debugsource-8.7p1-12.el9_0.3.aarch64.rpm SHA-256: e36964ae9024cafd82107dbacf6f86077c60638a387e363beb524b7644bdefdc
openssh-debugsource-8.7p1-12.el9_0.3.aarch64.rpm SHA-256: e36964ae9024cafd82107dbacf6f86077c60638a387e363beb524b7644bdefdc
openssh-keycat-8.7p1-12.el9_0.3.aarch64.rpm SHA-256: f2d3f442e29a657e76940fb85f495efd2fd40930cc5725ee7534b0f0c214cc8a
openssh-keycat-debuginfo-8.7p1-12.el9_0.3.aarch64.rpm SHA-256: dc79397d7b8ba043d093295a6042984c2f467e9f785620cc5ebf8d58078f4bc5
openssh-keycat-debuginfo-8.7p1-12.el9_0.3.aarch64.rpm SHA-256: dc79397d7b8ba043d093295a6042984c2f467e9f785620cc5ebf8d58078f4bc5
openssh-server-8.7p1-12.el9_0.3.aarch64.rpm SHA-256: 92716d7a77fe55be42bbd5b79dcdcc2da85b70e3bf565531bb5f82693680b6c0
openssh-server-debuginfo-8.7p1-12.el9_0.3.aarch64.rpm SHA-256: 35aeb8c327708e6e6d95de08b1f60bd0b92cf3f85926d7c02476cc4a26cf3052
openssh-server-debuginfo-8.7p1-12.el9_0.3.aarch64.rpm SHA-256: 35aeb8c327708e6e6d95de08b1f60bd0b92cf3f85926d7c02476cc4a26cf3052
pam_ssh_agent_auth-0.10.4-4.12.el9_0.3.aarch64.rpm SHA-256: 66123ee2c7d9d3152528d3d82a1bc503da663711864018ab937cb0f675daa812
pam_ssh_agent_auth-debuginfo-0.10.4-4.12.el9_0.3.aarch64.rpm SHA-256: 4c494fecc471871cd745e4380766b1cf0b59f7f5f481baaee38be9b3b8f68528
pam_ssh_agent_auth-debuginfo-0.10.4-4.12.el9_0.3.aarch64.rpm SHA-256: 4c494fecc471871cd745e4380766b1cf0b59f7f5f481baaee38be9b3b8f68528

Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 9.0

SRPM
openssh-8.7p1-12.el9_0.3.src.rpm SHA-256: bdddf97a5e4747e4d628ec1d55d2592bff4fd28380a77459ac987cba78668667
s390x
openssh-8.7p1-12.el9_0.3.s390x.rpm SHA-256: 0003e69e988eff0e40aab422306d1c7908b76e0020ace3cd3f1f52401d5e442d
openssh-askpass-8.7p1-12.el9_0.3.s390x.rpm SHA-256: 7eb90c5121274d9e687015559b71b09542f766ddff740c700aa23256c90e11be
openssh-askpass-debuginfo-8.7p1-12.el9_0.3.s390x.rpm SHA-256: 4debce7083c661eda3fe6aa6fc948739793905b554bdc82ad13d6643cff55c00
openssh-askpass-debuginfo-8.7p1-12.el9_0.3.s390x.rpm SHA-256: 4debce7083c661eda3fe6aa6fc948739793905b554bdc82ad13d6643cff55c00
openssh-clients-8.7p1-12.el9_0.3.s390x.rpm SHA-256: 244c4ca7b96f2756899a0c6d737999114aa0f03bac942e203bf09cdd6b6d2439
openssh-clients-debuginfo-8.7p1-12.el9_0.3.s390x.rpm SHA-256: 6b6caf32b5e69498e2db234ece87202fe653f06861f51f4ea6510a3640e5eb97
openssh-clients-debuginfo-8.7p1-12.el9_0.3.s390x.rpm SHA-256: 6b6caf32b5e69498e2db234ece87202fe653f06861f51f4ea6510a3640e5eb97
openssh-debuginfo-8.7p1-12.el9_0.3.s390x.rpm SHA-256: ae67d02441f83368999d59be4c6bd623e40aaf5509d98f5cce14274cd906b458
openssh-debuginfo-8.7p1-12.el9_0.3.s390x.rpm SHA-256: ae67d02441f83368999d59be4c6bd623e40aaf5509d98f5cce14274cd906b458
openssh-debugsource-8.7p1-12.el9_0.3.s390x.rpm SHA-256: e2799d6ab2c5a3c278ce7df04acc1bf1647d0f5d9c3fd6149767be248f12dfa3
openssh-debugsource-8.7p1-12.el9_0.3.s390x.rpm SHA-256: e2799d6ab2c5a3c278ce7df04acc1bf1647d0f5d9c3fd6149767be248f12dfa3
openssh-keycat-8.7p1-12.el9_0.3.s390x.rpm SHA-256: b9c3a7a87d9bb3f8fe0b0c52b9447239f91d8be8728dbace9a2665016d8890fc
openssh-keycat-debuginfo-8.7p1-12.el9_0.3.s390x.rpm SHA-256: c11127993ff890915b6dcadca0d1ac126f3ddbcb8724e69952e180d31ac35b77
openssh-keycat-debuginfo-8.7p1-12.el9_0.3.s390x.rpm SHA-256: c11127993ff890915b6dcadca0d1ac126f3ddbcb8724e69952e180d31ac35b77
openssh-server-8.7p1-12.el9_0.3.s390x.rpm SHA-256: d212847604bf9e080812d08085ddc5ba3b5e56ded2172f80ac8a4114d21cd9b5
openssh-server-debuginfo-8.7p1-12.el9_0.3.s390x.rpm SHA-256: 1888b37eaf68c655a7bd5388190e5f300c0d32e7665a81ee200917df7d67ca3b
openssh-server-debuginfo-8.7p1-12.el9_0.3.s390x.rpm SHA-256: 1888b37eaf68c655a7bd5388190e5f300c0d32e7665a81ee200917df7d67ca3b
pam_ssh_agent_auth-0.10.4-4.12.el9_0.3.s390x.rpm SHA-256: 39f138a15d4f464558a220ae6e7775d006c3d9c9541240c695c395ceedacf863
pam_ssh_agent_auth-debuginfo-0.10.4-4.12.el9_0.3.s390x.rpm SHA-256: d2222a28b394e9d122bb31276cda31fa28d17d0809abb3931fd75d17f6d34996
pam_ssh_agent_auth-debuginfo-0.10.4-4.12.el9_0.3.s390x.rpm SHA-256: d2222a28b394e9d122bb31276cda31fa28d17d0809abb3931fd75d17f6d34996

The Red Hat security contact is [email protected]. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat X (formerly Twitter)

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat, Inc.

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility