PT-2018-18152 · Zsh+5 · Zsh+5

Stephane Chazelas

·

Published

2018-02-27

·

Updated

2022-03-14

·

CVE-2018-7549

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions zsh versions 5.4.2 and earlier
Description The issue is related to a crash that occurs during the copy of an empty hash table in the zsh shell. This can be demonstrated using the typeset -p command.
Recommendations For zsh versions 5.4.2 and earlier, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2018-2144
CESA-2018_3073
CVE-2018-7549
MGASA-2018-0168
OPENSUSE-SU-2018_1093-1
RHSA-2018:3073
RHSA-2018_3073
SUSE-SU-2018:1072-1
SUSE-SU-2022:14910-1
SUSE-SU-2022_14910-1
USN-3593-1

Affected Products

Alt Linux
Centos
Red Hat
Suse
Ubuntu
Zsh