-
Bug
-
Resolution: Obsolete
-
Normal
-
None
-
rhel-10.0.beta
-
No
-
None
-
rhel-sst-security-crypto
-
ssg_security
-
None
-
False
-
-
None
-
None
-
None
-
None
-
None
What were you trying to do that didn't work?
run TC /CoreOS/openssh/Security/CVE-2024-6387-Possible-remote-code-execution-due-to-a-race-condition on RHEL-10
It has to be investigated if it's regression or just behavior was changed (and the test is not relevant for rhel-10)
Please provide the package NVR for which bug is seen:
openssh-9.8p1-2.el10.0.x86_64
How reproducible:
always
Steps to reproduce
- run TC /CoreOS/openssh/Security/CVE-2024-6387-Possible-remote-code-execution-due-to-a-race-condition
- check secure log
Expected results
secure log should not contain message 'Timeout before authentication'
Actual results
message 'Timeout before authentication' is present in secure log