[[["易于理解","easyToUnderstand","thumb-up"],["解决了我的问题","solvedMyProblem","thumb-up"],["其他","otherUp","thumb-up"]],[["很难理解","hardToUnderstand","thumb-down"],["信息或示例代码不正确","incorrectInformationOrSampleCode","thumb-down"],["没有我需要的信息/示例","missingTheInformationSamplesINeed","thumb-down"],["翻译问题","translationIssue","thumb-down"],["其他","otherDown","thumb-down"]],["最后更新时间 (UTC):2025-09-04。"],[[["\u003cp\u003eSecurity bulletins regarding Bare Metal Solution are released periodically and detailed on this page.\u003c/p\u003e\n"],["\u003cp\u003eA critical vulnerability, CVE-2024-6387, has been discovered in the OpenSSH server, which may be remotely exploitable on glibc-based Linux systems.\u003c/p\u003e\n"],["\u003cp\u003eWhile no exploitation attempts have been observed on existing Google-managed Bare Metal Solution infrastructure, the impact could lead to unauthenticated remote code execution as root.\u003c/p\u003e\n"],["\u003cp\u003eUsers are recommended to update to OpenSSH version 9.8p1 or apply vendor-provided patches, disable unnecessary OpenSSH servers, restrict SSH access, and monitor for unusual network activity.\u003c/p\u003e\n"],["\u003cp\u003eYou can subscribe to the security bulletins via the provided XML feed link.\u003c/p\u003e\n"]]],[],null,["# Security bulletins\n==================\n\nFrom time to time, we might release security bulletins related to\nBare Metal Solution. All security bulletins for Bare Metal Solution are\ndescribed here.\n\n[Use this XML feed to subscribe to security bulletins for this page.](https://cloud.google.com/feeds/bare-metal-solution-security-bulletins.xml)\n\nGCP-2024-040\n------------\n\n**Published:**2024-07-02"]]