Remediate OpenSSH CVE-2024-6387 and Harden Port 8080 in ZStack Cloud
Applicable Scenario
- Product:
ZCF - Component:
ZStack Cloud - Versions:
4.8.xand4.6.x - Operating system:
C76 - Deployment: dual management nodes
- Trigger condition: a security scan reports
CVE-2024-6387and exposure of ZStack Cloud port8080.
Symptoms
OpenSSHis affected by the race-condition vulnerabilityCVE-2024-6387.- ZStack Cloud port
8080is exposed externally. - The remediation requires both port hardening and an
OpenSSH/OpenSSLupgrade.
Diagnostic Procedure
Sign in to view the rest of this article, plus more troubleshooting and solution know-how.
Sign in