CVE-2014-6271
GNU Bourne-Again Shell (Bash) Arbitrary Code Execution Vulnerability
Does this matter?
Known to be exploited in the wild (CISA KEV, CISA remediation deadline 28 July 2022). Treat as an emergency change: patch or isolate now, then hunt for prior compromise.
Description
GNU Bash through 4.3 processes trailing strings after function definitions in the values of environment variables, which allows remote attackers to execute arbitrary code via a crafted environment, as demonstrated by vectors involving the ForceCommand feature in OpenSSH sshd, the mod_cgi and mod_cgid modules in the Apache HTTP Server, scripts executed by unspecified DHCP clients, and other situations in which setting the environment occurs across a privilege boundary from Bash execution, aka "ShellShock." NOTE: the original fix for this issue was incorrect; CVE-2014-7169 has been assigned to cover the vulnerability that is still present after the incorrect fix.
- CVSS 3.1
- 9.8 CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
- EPSS
- 100.00% probability · 100th percentile
- CISA KEV
- Listed 28 January 2022 · due 28 July 2022
- Weakness
- CWE-78
- Affected
- gnu/bash · arista/eos · oracle/linux · qnap/qts · mageia/mageia · redhat/gluster storage server for on-premise · redhat/virtualization · redhat/enterprise linux · redhat/enterprise linux desktop · redhat/enterprise linux eus · redhat/enterprise linux for ibm z systems · redhat/enterprise linux for power big endian · redhat/enterprise linux for power big endian eus · redhat/enterprise linux for scientific computing · redhat/enterprise linux server · redhat/enterprise linux server aus · redhat/enterprise linux server from rhui · redhat/enterprise linux server tus · redhat/enterprise linux workstation · suse/studio onsite · +40 more
- Source
- security@debian.org
CISA notes
Apply updates per vendor instructions. https://nvd.nist.gov/vuln/detail/CVE-2014-6271
References
- http://advisories.mageia.org/MGASA-2014-0388.htmlThird Party Advisory
- http://archives.neohapsis.com/archives/bugtraq/2014-10/0101.htmlBroken Link, Third Party Advisory
- http://jvn.jp/en/jp/JVN55667175/index.htmlVendor Advisory
- http://jvndb.jvn.jp/jvndb/JVNDB-2014-000126Third Party Advisory, VDB Entry, Vendor Advisory
- http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10673Third Party Advisory
- http://lcamtuf.blogspot.com/2014/09/quick-notes-about-bash-bug-its-impact.htmlExploit, Issue Tracking, Third Party Advisory
- http://linux.oracle.com/errata/ELSA-2014-1293.htmlThird Party Advisory
- http://linux.oracle.com/errata/ELSA-2014-1294.htmlThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00028.htmlMailing List, Third Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00029.htmlMailing List, Third Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00034.htmlMailing List, Third Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00037.htmlMailing List, Third Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00040.htmlMailing List, Third Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00044.htmlMailing List, Third Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00049.htmlMailing List, Third Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2014-10/msg00004.htmlMailing List, Third Party Advisory
- http://lists.opensuse.org/opensuse-updates/2014-10/msg00023.htmlMailing List, Third Party Advisory
- http://lists.opensuse.org/opensuse-updates/2014-10/msg00025.htmlMailing List, Third Party Advisory
- http://marc.info/?l=bugtraq&m=141216207813411&w=2Mailing List, Third Party Advisory
- http://marc.info/?l=bugtraq&m=141216668515282&w=2Mailing List, Third Party Advisory
- http://marc.info/?l=bugtraq&m=141235957116749&w=2Mailing List, Third Party Advisory
- http://marc.info/?l=bugtraq&m=141319209015420&w=2Mailing List, Third Party Advisory
- http://marc.info/?l=bugtraq&m=141330425327438&w=2Mailing List, Third Party Advisory
- http://marc.info/?l=bugtraq&m=141330468527613&w=2Mailing List, Third Party Advisory
- http://marc.info/?l=bugtraq&m=141345648114150&w=2Mailing List, Third Party Advisory
- http://marc.info/?l=bugtraq&m=141383026420882&w=2Mailing List, Third Party Advisory
- http://marc.info/?l=bugtraq&m=141383081521087&w=2Mailing List, Third Party Advisory
- http://marc.info/?l=bugtraq&m=141383138121313&w=2Mailing List, Third Party Advisory
- http://marc.info/?l=bugtraq&m=141383196021590&w=2Mailing List, Third Party Advisory
- http://marc.info/?l=bugtraq&m=141383244821813&w=2Mailing List, Third Party Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.