CVE-2018-7549
published 2018-02-27CVE-2018-7549: In params.c in zsh through 5.4.2, there is a crash during a copy of an empty hash table, as demonstrated by typeset -p.
PriorityP433high7.5CVSS 3.0
AVNACLPRNUINSUCNINAH
EPSS
2.64%
84.0th percentile
In params.c in zsh through 5.4.2, there is a crash during a copy of an empty hash table, as demonstrated by typeset -p.
Affected
14 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| debian | zsh | < zsh 5.5-1 (bookworm) | zsh 5.5-1 (bookworm) |
| redhat | enterprise_linux_desktop | — | — |
| redhat | enterprise_linux_server | — | — |
| redhat | enterprise_linux_workstation | — | — |
| zsh | zsh | <= 5.4.2 | — |
| zsh | zsh | >= 0 < 5.5-1 | 5.5-1 |
| zsh | zsh | >= 0 < 5.5-1 | 5.5-1 |
| zsh | zsh | >= 0 < 5.5-1 | 5.5-1 |
| zsh | zsh | >= 0 < 5.5-1 | 5.5-1 |
| zsh | zsh | >= 0 < 5.0.2-3ubuntu6.1 | 5.0.2-3ubuntu6.1 |
| zsh | zsh | >= 0 < 5.1.1-1ubuntu2.1 | 5.1.1-1ubuntu2.1 |
CVSS provenance
nvdv3.07.5HIGHCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:N/I:N/A:P
osv7.8HIGH
vendor_ubuntu7.8HIGH
vendor_debian7.5LOW
vendor_redhat7.5HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
Zsh vulnerabilities
vendor_ubuntu·2018-03-08·CVSS 7.8
CVE-2014-10070 [HIGH] Zsh vulnerabilities
Title: Zsh vulnerabilities
Summary: Several security issues were fixed in Zsh.
It was discovered that Zsh incorrectly handled certain enviroment variables.
An attacker could possibly use this issue to gain privileged access to the
system. This issue only affected Ubuntu 14.04 LTS. (CVE-2014-10070)
It was discovered that Zsh incorrectly handled certain inputs.
An attacker could possibly use this to execute arbitrary code. This
issue only affected Ubuntu 14.04 LTS. (CVE-2014-10071)
It was discovered that Zsh incorrectly handled some symbolic links.
An attacker could possibly use this to execute arbitrary code. This issue
only affected Ubuntu 14.04 LTS. (CVE-2014-10072)
It was discovered that Zsh incorrectly handled certain errors. An attacker
could possibly use this issue to cause a den
Debian
CVE-2018-7549: zsh - In params.c in zsh through 5.4.2, there is a crash during a copy of an empty has...
vendor_debian·2018·CVSS 7.5
CVE-2018-7549 [HIGH] CVE-2018-7549: zsh - In params.c in zsh through 5.4.2, there is a crash during a copy of an empty has...
In params.c in zsh through 5.4.2, there is a crash during a copy of an empty hash table, as demonstrated by typeset -p.
Scope: local
bookworm: resolved (fixed in 5.5-1)
bullseye: resolved (fixed in 5.5-1)
forky: resolved (fixed in 5.5-1)
sid: resolved (fixed in 5.5-1)
trixie: resolved (fixed in 5.5-1)
Red Hat
zsh: crash on copying empty hash table
vendor_redhat·2017-12-22·CVSS 7.5
CVE-2018-7549 [HIGH] CWE-665 zsh: crash on copying empty hash table
zsh: crash on copying empty hash table
In params.c in zsh through 5.4.2, there is a crash during a copy of an empty hash table, as demonstrated by typeset -p.
A NULL pointer dereference flaw was found in the code responsible for saving hashtables of the zsh package. An attacker could use this flaw to cause a denial of service by crashing the user shell.
Package: zsh (Red Hat Enterprise Linux 5) - Not affected
Package: zsh (Red Hat Enterprise Linux 6) - Will not fix
Package: zsh (Red Hat Enterprise Linux 8) - Not affected
GHSA
GHSA-mfcw-g327-phj2: In params
ghsa_unreviewed·2022-05-14
CVE-2018-7549 [HIGH] CWE-20 GHSA-mfcw-g327-phj2: In params
In params.c in zsh through 5.4.2, there is a crash during a copy of an empty hash table, as demonstrated by typeset -p.
OSV
zsh vulnerabilities
osv·2018-03-08·CVSS 7.8
CVE-2014-10070 [HIGH] zsh vulnerabilities
zsh vulnerabilities
It was discovered that Zsh incorrectly handled certain enviroment variables.
An attacker could possibly use this issue to gain privileged access to the
system. This issue only affected Ubuntu 14.04 LTS. (CVE-2014-10070)
It was discovered that Zsh incorrectly handled certain inputs.
An attacker could possibly use this to execute arbitrary code. This
issue only affected Ubuntu 14.04 LTS. (CVE-2014-10071)
It was discovered that Zsh incorrectly handled some symbolic links.
An attacker could possibly use this to execute arbitrary code. This issue
only affected Ubuntu 14.04 LTS. (CVE-2014-10072)
It was discovered that Zsh incorrectly handled certain errors. An attacker
could possibly use this issue to cause a denial of service. (CVE-2016-10714)
It was discovered that Zsh
OSV
CVE-2018-7549: In params
osv·2018-02-27·CVSS 7.5
CVE-2018-7549 [HIGH] CVE-2018-7549: In params
In params.c in zsh through 5.4.2, there is a crash during a copy of an empty hash table, as demonstrated by typeset -p.
No detection rules found.
No public exploits indexed.
https://access.redhat.com/errata/RHSA-2018:3073https://security.gentoo.org/glsa/201805-10https://sourceforge.net/p/zsh/code/ci/c2cc8b0fbefc9868fa83537f5b6d90fc1ec438ddhttps://usn.ubuntu.com/3593-1/https://access.redhat.com/errata/RHSA-2018:3073https://security.gentoo.org/glsa/201805-10https://sourceforge.net/p/zsh/code/ci/c2cc8b0fbefc9868fa83537f5b6d90fc1ec438ddhttps://usn.ubuntu.com/3593-1/
2018-02-27
Published