Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Jens Heyens

#33257de 53,640
7.8CVSS total
Vulnerabilidades · 1
PT-2017-16767
7.8
2017-03-27
Gnu · Bash · CVE-2017-5932
**Name of the Vulnerable Software and Affected Versions** Bash version 4.4 **Description** The issue allows local users to gain privileges through a crafted filename. This is achieved by starting the filename with a " (double quote) character and a command substitution metacharacter. **Recommendations** For Bash version 4.4, consider disabling the path autocompletion feature as a temporary workaround until a patch is available. Restrict access to sensitive areas of the system to minimize the risk of exploitation.