PoC Archive PoC Archive

tag

Openssh

  • network HIGH

    OpenSSH Forwarded-Agent Lock/Unlock State Confusion → Unauthorized PKCS#11 Provider Load (No CVE)

    OpenSSH's ssh-agent supports being locked with a password, during which it is supposed to refuse essentially all requests — including the session-bind@openssh.com extension that a forwarded agent connection uses to record which remote session it belongs to.…

    Unpatched 2026-07-12
  • CVE-2024-6387 network HIGH 8.1 EPSS 100%

    OpenSSH regreSSHion Signal-Handler Race Unauthenticated RCE (CVE-2024-6387)

    CVE-2024-6387 (regreSSHion) is a signal-handler race condition in OpenSSH sshd that reintroduced a previously fixed bug class and can allow unauthenticated remote code execution as root on glibc-based Linux systems. The issue is triggered around…

    Patched 2026-05-16