PT-2014-9085 · Openbsd+10 · Openssh Sshd+11

Published

1970-01-01

·

Updated

2025-10-03

·

CVE-2014-7169

CVSS v3.1

10

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions bash versions prior to 4.3 bash-3.0 bash-3.2 bash-4.1.2 bash-4.2.45 bash-debuginfo bash-debuginfo-3.2 bash-debuginfo-4.1.2 bash-debuginfo-4.2.45 bash-debugsource bash-devel bash-doc bash-doc-4.1.2 bash-doc-4.2.45 bash-loadables bash-loadables-debuginfo
Description The issue is related to the way the Bash shell processes environment variables, allowing remote attackers to execute arbitrary commands. This can lead to unauthorized access, data modification, and other malicious activities. The vulnerability can be exploited through various vectors, including the ForceCommand feature in OpenSSH sshd, the mod cgi and mod cgid modules in the Apache HTTP Server, and scripts executed by DHCP clients. Researchers have confirmed the possibility of exploiting this vulnerability in different situations where environment variables are set across a privilege boundary from Bash execution.
Recommendations For bash versions prior to 4.3, update to version 4.3 or later. For bash-3.0, update to a newer version. For bash-3.2, update to a newer version. For bash-4.1.2, update to a newer version. For bash-4.2.45, update to a newer version. For bash-debuginfo, update to a newer version. For bash-debuginfo-3.2, update to a newer version. For bash-debuginfo-4.1.2, update to a newer version. For bash-debuginfo-4.2.45, update to a newer version. For bash-debugsource, update to a newer version. For bash-devel, update to a newer version. For bash-doc, update to a newer version. For bash-doc-4.1.2, update to a newer version. For bash-doc-4.2.45, update to a newer version. For bash-loadables, update to a newer version. For bash-loadables-debuginfo, update to a newer version. As a temporary workaround, consider disabling the use of environment variables in Bash scripts until a patch is available. Restrict access to the Bash shell to minimize the risk of exploitation. Avoid using the Bash shell for executing commands from untrusted sources until the issue is resolved.

Exploit

Fix

OS Command Injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2014-2195
ALT-PU-2014-2201
BDU:2014-00319
BDU:2015-00148
BDU:2015-00151
BDU:2015-00153
BDU:2015-00155
BDU:2015-00157
BDU:2015-00159
BDU:2015-05950
BDU:2015-05951
BDU:2015-05952
BDU:2015-05953
BDU:2015-05954
BDU:2015-05955
BDU:2015-05956
BDU:2015-05957
BDU:2015-05958
BDU:2015-06152
BDU:2015-06153
BDU:2015-06154
BDU:2015-06155
BDU:2015-06156
BDU:2015-06157
BDU:2015-06158
BDU:2015-06159
BDU:2015-06160
BDU:2015-09245
BDU:2015-09246
BDU:2015-09247
BDU:2015-09248
BDU:2015-09249
BDU:2015-09250
BDU:2015-09251
BDU:2015-09252
BDU:2015-09253
BDU:2015-09795
BDU:2015-09818
CESA-2014_1306
CVE-2014-7169
DLA-63-1
DSA-3035-1
MGASA-2014-0393
OPENSUSE-SU-2014_1229-1
OPENSUSE-SU-2014_1242-1
OPENSUSE-SU-2014_1254-1
OPENSUSE-SU-2024:10106-1
RHSA-2014:1306
RHSA-2014:1311
RHSA-2014:1312
RHSA-2014:1354
RHSA-2014:1865
RHSA-2014_1306
SUSE-SU-2014_1247-1
SUSE-SU-2014_1259-1
SUSE-SU-2017:2699-1
SUSE-SU-2017:2700-1
USN-2363-1
USN-2363-2

Affected Products

Alt Linux
Apache Http Server
Centos
Check Point Gaia
Cisco Ios Xe
Cisco Nexus
Openssh Sshd
Red Hat
Suse
Ubuntu
Vmware Vcenter
Bash