cbcvebase.
CVE-2014-7169
published 2014-09-25

CVE-2014-7169: GNU Bash through 4.3 bash43-025 processes trailing strings after certain malformed function definitions in the values of environment variables, which allows…

critical9.8CVSS 3.1
AVNACLPRNUINSUCHIHAH
KEVITWEXPLOIT
CISA Known Exploited Vulnerabilitydue 2022-07-28
Exploited in the wild
GNU Bash through 4.3 bash43-025 processes trailing strings after certain malformed function definitions in the values of environment variables, which allows remote attackers to write to files or possibly have unknown other impact via a crafted environment, as demonstrated by vectors involving the ForceCommand feature in OpenSSH sshd, the mod_cgi and mod_cgid modules in the Apache HTTP Server, scripts executed by unspecified DHCP clients, and other situations in which setting the environment occurs across a privilege boundary from Bash execution. NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-6271.

Affected

288 ranges· showing 25
VendorProductVersion rangeFixed in
applemac_os_x>= 10.0.0 < 10.10.010.10.0
aristaeos>= 4.10.0 < 4.10.94.10.9
aristaeos>= 4.11.0 < 4.11.114.11.11
aristaeos>= 4.12.0 < 4.12.94.12.9
aristaeos>= 4.13.0 < 4.13.94.13.9
aristaeos>= 4.14.0 < 4.14.4f4.14.4f
aristaeos>= 4.9.0 < 4.9.124.9.12
canonicalubuntu_linux
canonicalubuntu_linux
canonicalubuntu_linux
checkpointsecurity_gateway< r77.30r77.30
citrixcitrix_adm
citrixcitrix_hypervisor
citrixcitrix_netscaler_adc
citrixcitrix_netscaler_sdx
citrixcitrix_virtual_apps_and_desktops
citrixcitrix_xenapp
citrixcitrix_xendesktop
citrixcitrix_xenmobile
citrixcitrix_xenserver
citrixendpoint_management
citrixnetscaler_adc
citrixnetscaler_gateway
citrixnetscaler_sdx
citrixnetscaler_sdx_firmware< 9.3.67.5r19.3.67.5r1

CVSS provenance

nvd10.0CRITICALAV:N/AC:L/Au:N/C:C/I:C/A:C
nvdv3.19.8CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
osv9.8CRITICAL
vulncheck9.8CRITICAL
cisa9.8CRITICAL