cve-2014-7169
HIGH cisa_known_exploited
Description
GNU Bash through 4.3 processes trailing strings after function definitions in the values of environment variables, which allows remote attackers to execute code. This CVE correctly remediates the vulnerability in CVE-2014-6271.
Timeline
- Published
- 2022-01-28
- Last Modified
- 2022-01-28
CVSS Details
CVSS details not available.
Affected Products
No product information available.
References
No references available.
Linked Vulnerabilities
{
"cvss": 0.0,
"datePublished": "2022-01-28",
"dateUpdated": "2022-01-28",
"description": "GNU Bash through 4.3 processes trailing strings after function definitions in the values of environment variables, which allows remote attackers to execute code. This CVE correctly remediates the vulnerability in CVE-2014-6271.",
"dueDate": "2022-07-28",
"id": "CVE-2014-7169",
"kev_catalogs": [
"cisa"
],
"knownRansomwareCampaignUse": "Unknown",
"notes": "https://nvd.nist.gov/vuln/detail/CVE-2014-7169",
"product": "Bourne-Again Shell (Bash)",
"requiredAction": "Apply updates per vendor instructions.",
"severity": "HIGH",
"source": "cisa_known_exploited",
"title": "GNU Bourne-Again Shell (Bash) Arbitrary Code Execution Vulnerability",
"vendor": "GNU"
}
Enrichment data
Aggregated bundle (all enrichments)