CVE-2014-7169

Crítica9.8 Publicada el 25 sept 2014

GNU Bash through 4.3 bash43-025 processes trailing strings after certain malformed function definitions in the values of environment variables, which allows remote attackers to write to files or possibly have unknown other impact via a crafted environment, as demonstrated by vectors involving the ForceCommand feature in OpenSSH sshd, the mod_cgi and mod_cgid modules in the Apache HTTP Server, scripts executed by unspecified DHCP clients, and other situations in which setting the environment occurs across a privilege boundary from Bash execution. NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-6271.

Explotada activamente

  • En el catálogo CISA de vulnerabilidades explotadas desde el 28 ene 2022
  • Las agencias federales de EE. UU. deben corregirla antes del 28 jul 2022 (BOD 22-01)
  • Primer ataque observado 5 días después de la divulgación

Apply updates per vendor instructions.

Fuente: CISA KEV · 31 mar 2025 28 ene 2022 1 mar 2018 30 sept 2014

Puntuación CVSS9.8 / 10CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Tipo de debilidad (CWE)CWE-78, CWE-78
Fabricantesredhat, debian, suse, oracle, gnu, qnap, opensuse, arista, mageia

Productos afectados

FabricantesProductoVersiones
gnubash<= 4.3
aristaeos< 4.9.12
oraclelinux4
qnapqts< 4.1.1
mageiamageia3.0
redhatgluster storage server for on-premise2.1
redhatvirtualization3.4
redhatenterprise linux4.0
redhatenterprise linux desktop5.0
redhatenterprise linux eus5.9
redhatenterprise linux for ibm z systems5.9_s390x
redhatenterprise linux for power big endian5.0_ppc
redhatenterprise linux for power big endian eus6.5_ppc64
redhatenterprise linux for scientific computing6.0
redhatenterprise linux server5.0
redhatenterprise linux server aus5.6
redhatenterprise linux server from rhui5.0
redhatenterprise linux server tus6.5
redhatenterprise linux workstation5.0
susestudio onsite1.3
opensuseopensuse12.3
suselinux enterprise desktop11
suselinux enterprise server10
suselinux enterprise software development kit11
debiandebian linux7.0

Artículos relacionados

This product uses the NVD API but is not endorsed or certified by the NVD.

Base de datos CVE