CVE-2014-10071
published 2018-02-27CVE-2014-10071: In exec.c in zsh before 5.0.7, there is a buffer overflow for very long fds in the ">& fd" syntax.
PriorityP340critical9.8CVSS 3.0
AVNACLPRNUINSUCHIHAH
EPSS
2.74%
84.7th percentile
In exec.c in zsh before 5.0.7, there is a buffer overflow for very long fds in the ">& fd" syntax.
Affected
11 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| debian | zsh | < zsh 5.0.7-3 (bookworm) | zsh 5.0.7-3 (bookworm) |
| zsh | zsh | < 5.0.7 | 5.0.7 |
| zsh | zsh | >= 0 < 5.0.7-3 | 5.0.7-3 |
| zsh | zsh | >= 0 < 5.0.7-3 | 5.0.7-3 |
| zsh | zsh | >= 0 < 5.0.7-3 | 5.0.7-3 |
| zsh | zsh | >= 0 < 5.0.7-3 | 5.0.7-3 |
| zsh | zsh | >= 0 < 5.0.2-3ubuntu6.1 | 5.0.2-3ubuntu6.1 |
| zsh | zsh | >= 0 < 5.1.1-1ubuntu2.1 | 5.1.1-1ubuntu2.1 |
CVSS provenance
nvdv3.09.8CRITICALCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvdv2.07.5HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
osv9.8CRITICAL
vendor_debian9.8CRITICAL
vendor_redhat9.8CRITICAL
vendor_ubuntu7.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-fw6p-93fm-p636: In exec
ghsa_unreviewed·2022-05-14
CVE-2014-10071 [CRITICAL] CWE-119 GHSA-fw6p-93fm-p636: In exec
In exec.c in zsh before 5.0.7, there is a buffer overflow for very long fds in the ">& fd" syntax.
OSV
zsh vulnerabilities
osv·2018-03-08·CVSS 7.8
CVE-2014-10070 [HIGH] zsh vulnerabilities
zsh vulnerabilities
It was discovered that Zsh incorrectly handled certain enviroment variables.
An attacker could possibly use this issue to gain privileged access to the
system. This issue only affected Ubuntu 14.04 LTS. (CVE-2014-10070)
It was discovered that Zsh incorrectly handled certain inputs.
An attacker could possibly use this to execute arbitrary code. This
issue only affected Ubuntu 14.04 LTS. (CVE-2014-10071)
It was discovered that Zsh incorrectly handled some symbolic links.
An attacker could possibly use this to execute arbitrary code. This issue
only affected Ubuntu 14.04 LTS. (CVE-2014-10072)
It was discovered that Zsh incorrectly handled certain errors. An attacker
could possibly use this issue to cause a denial of service. (CVE-2016-10714)
It was discovered that Zsh
OSV
CVE-2014-10071: In exec
osv·2018-02-27·CVSS 9.8
CVE-2014-10071 [CRITICAL] CVE-2014-10071: In exec
In exec.c in zsh before 5.0.7, there is a buffer overflow for very long fds in the ">& fd" syntax.
Ubuntu
Zsh vulnerabilities
vendor_ubuntu·2018-03-08·CVSS 7.8
CVE-2014-10070 [HIGH] Zsh vulnerabilities
Title: Zsh vulnerabilities
Summary: Several security issues were fixed in Zsh.
It was discovered that Zsh incorrectly handled certain enviroment variables.
An attacker could possibly use this issue to gain privileged access to the
system. This issue only affected Ubuntu 14.04 LTS. (CVE-2014-10070)
It was discovered that Zsh incorrectly handled certain inputs.
An attacker could possibly use this to execute arbitrary code. This
issue only affected Ubuntu 14.04 LTS. (CVE-2014-10071)
It was discovered that Zsh incorrectly handled some symbolic links.
An attacker could possibly use this to execute arbitrary code. This issue
only affected Ubuntu 14.04 LTS. (CVE-2014-10072)
It was discovered that Zsh incorrectly handled certain errors. An attacker
could possibly use this issue to cause a den
Red Hat
zsh: buffer overflow for very long fds in >& fd syntax
vendor_redhat·2014-10-06·CVSS 9.8
CVE-2014-10071 [CRITICAL] CWE-120 zsh: buffer overflow for very long fds in >& fd syntax
zsh: buffer overflow for very long fds in >& fd syntax
In exec.c in zsh before 5.0.7, there is a buffer overflow for very long fds in the ">& fd" syntax.
A buffer overflow flaw was found in the zsh shell file descriptor redirection functionality. An attacker could use this flaw to cause a denial of service by crashing the user shell.
Package: zsh (Red Hat Enterprise Linux 5) - Will not fix
Package: zsh (Red Hat Enterprise Linux 6) - Will not fix
Package: zsh (Red Hat Enterprise Linux 8) - Not affected
Debian
CVE-2014-10071: zsh - In exec.c in zsh before 5.0.7, there is a buffer overflow for very long fds in t...
vendor_debian·2014·CVSS 9.8
CVE-2014-10071 [CRITICAL] CVE-2014-10071: zsh - In exec.c in zsh before 5.0.7, there is a buffer overflow for very long fds in t...
In exec.c in zsh before 5.0.7, there is a buffer overflow for very long fds in the ">& fd" syntax.
Scope: local
bookworm: resolved (fixed in 5.0.7-3)
bullseye: resolved (fixed in 5.0.7-3)
forky: resolved (fixed in 5.0.7-3)
sid: resolved (fixed in 5.0.7-3)
trixie: resolved (fixed in 5.0.7-3)
No detection rules found.
No public exploits indexed.
https://access.redhat.com/errata/RHSA-2018:3073https://sourceforge.net/p/zsh/code/ci/49a3086bb67575435251c70ee598e2fd406ef055https://usn.ubuntu.com/3593-1/https://access.redhat.com/errata/RHSA-2018:3073https://sourceforge.net/p/zsh/code/ci/49a3086bb67575435251c70ee598e2fd406ef055https://usn.ubuntu.com/3593-1/
2018-02-27
Published