Critical severity9.1NVD Advisory· Published Mar 25, 2024· Updated Jun 17, 2026
CVE-2024-2873
CVE-2024-2873
Description
A vulnerability was found in wolfSSH's server-side state machine before versions 1.4.17. A malicious client could create channels without first performing user authentication, resulting in unauthorized access.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3Patches
Vulnerability mechanics
References
3- www.wolfssl.com/docs/security-vulnerabilities/nvdVendor Advisory
- github.com/wolfSSL/wolfssh/pull/670nvdIssue Tracking
- github.com/wolfSSL/wolfssh/pull/671nvdIssue Tracking
News mentions
0No linked articles in our index yet.