Is Symantec Messaging Gateway (SMG) vulnerable to CVE-2024-6387 (also known as "regreSSHion"), a signal handler race condition in OpenSSH's server (sshd)?
CVE-2024-6387 impacts specific versions of OpenSSH. Security scanners may flag Messaging Gateway if they perform a simple version-string check without verifying backported patches or specific build configurations.
Broadcom Engineering has confirmed that Symantec Messaging Gateway (SMG) versions 10.9.0 and later are NOT affected by CVE-2024-6387.