Knowledge BaseSolutionsRemediate OpenSSH CVE-2024-6387 and Harden Port 8080 in ZStack Cloud

Remediate OpenSSH CVE-2024-6387 and Harden Port 8080 in ZStack Cloud

SolutionsZCF · CloudVersions4.8.x / 4.6.xArticle IDKB-200123Updated2026-09-16

Applicable Scenario

  • Product: ZCF
  • Component: ZStack Cloud
  • Versions: 4.8.x and 4.6.x
  • Operating system: C76
  • Deployment: dual management nodes
  • Trigger condition: a security scan reports CVE-2024-6387 and exposure of ZStack Cloud port 8080.

Symptoms

  • OpenSSH is affected by the race-condition vulnerability CVE-2024-6387.
  • ZStack Cloud port 8080 is exposed externally.
  • The remediation requires both port hardening and an OpenSSH/OpenSSL upgrade.

Diagnostic Procedure

Sign in to view the rest of this article, plus more troubleshooting and solution know-how.

Remediate OpenSSH CVE-2024-6387 and Harden Port 8080 in ZStack Cloud | KB-200123 | ZStack Resource Center