V
Scaner-VS
HomeCatalogSourcesCWECAPECATT&CKMitigationsDocs
CVE-2014-6271
DEB
Critical KEVConfirmedExploit available

GNU Bash through 4.3 processes trailing strings after function definitions in the values of environment variables, which allows remote atta…

CVSS
9.8
Critical
EPSS
1.00
p100
Published
2014-01-01
Updated
2022-01-28
Description

GNU Bash through 4.3 processes trailing strings after function definitions in the values of environment variables, which allows remote attackers to execute arbitrary code via a crafted environment, as demonstrated by vectors involving the ForceCommand feature in OpenSSH sshd, the mod_cgi and mod_cgid modules in the Apache HTTP Server, scripts executed by unspecified DHCP clients, and other situations in which setting the environment occurs across a privilege boundary from Bash execution, aka "ShellShock." NOTE: the original fix for this issue was incorrect; CVE-2014-7169 has been assigned to cover the vulnerability that is still present after the incorrect fix.

Tags · CWE
KEVPre-auth
CWE-78
CAPEC-6
CAPEC-15
CAPEC-43
CAPEC-88
CAPEC-108
Affected products
Bash ≤ 4.3
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Timeline
2014-01-01
Published
2022-01-28
Added to KEV
2022-01-28
Updated
CVSS 3.1 breakdown
Attack Vector
AV: N
Network (N)
Attack Complexity
AC: L
Low (L)
Privileges Required
PR: N
None (N)
User Interaction
UI: N
None (N)
Scope
S: U
Unchanged (U)
Confidentiality Impact
C: H
High (H)
Integrity Impact
I: H
High (H)
Availability Impact
A: H
High (H)
Exploit indicators
EPSS
1.000 · p100
Known exploited (KEV)
Yes
Known exploits — Сканер-ВС
34765
exploitdb · https://www.exploit-db.com/exploits/34765
Enterprise
34766
exploitdb · https://www.exploit-db.com/exploits/34766
Enterprise
34777
exploitdb · https://www.exploit-db.com/exploits/34777
Enterprise
34839
exploitdb · https://www.exploit-db.com/exploits/34839
Enterprise
34860
exploitdb · https://www.exploit-db.com/exploits/34860
Enterprise
34862
exploitdb · https://www.exploit-db.com/exploits/34862
Enterprise
34879
exploitdb · https://www.exploit-db.com/exploits/34879
Enterprise
34895
exploitdb · https://www.exploit-db.com/exploits/34895
Enterprise
34896
exploitdb · https://www.exploit-db.com/exploits/34896
Enterprise
34900
exploitdb · https://www.exploit-db.com/exploits/34900
Enterprise
35081
exploitdb · https://www.exploit-db.com/exploits/35081
Enterprise
35115
exploitdb · https://www.exploit-db.com/exploits/35115
Enterprise
35146
exploitdb · https://www.exploit-db.com/exploits/35146
Enterprise
36503
exploitdb · https://www.exploit-db.com/exploits/36503
Enterprise
36504
exploitdb · https://www.exploit-db.com/exploits/36504
Enterprise
36609
exploitdb · https://www.exploit-db.com/exploits/36609
Enterprise
36933
exploitdb · https://www.exploit-db.com/exploits/36933
Enterprise
37816
exploitdb · https://www.exploit-db.com/exploits/37816
Enterprise
38849
exploitdb · https://www.exploit-db.com/exploits/38849
Enterprise
39568
exploitdb · https://www.exploit-db.com/exploits/39568
Enterprise
39887
exploitdb · https://www.exploit-db.com/exploits/39887
Enterprise
39918
exploitdb · https://www.exploit-db.com/exploits/39918
Enterprise
40619
exploitdb · https://www.exploit-db.com/exploits/40619
Enterprise
40938
exploitdb · https://www.exploit-db.com/exploits/40938
Enterprise
42938
exploitdb · https://www.exploit-db.com/exploits/42938
Enterprise
CVE-2014-6271
github-poc · https://github.com/im2sinister/CVE-2014-6271
Enterprise
CVE-2014-7169
github-poc · https://github.com/gina-alaska/bash-cve-2014-7169-cookbook
Enterprise
Affected software
ProductVendorStatus
bashExploited
bashExploited
bashExploited
bashExploited
bashExploited
bashExploited
bashExploited
bashExploited
bashExploited
bashExploited
bashExploited
bashExploited
bash4Exploited
bash4-develExploited
bash4-docExploited
bash4-examplesExploited
rhev-hypervisor6Exploited
sh4Exploited
arx_firmware*Exploited
bash*Exploited