Lucene search

K
ciscoCiscoCISCO-SA-20140926-BASH
HistorySep 26, 2014 - 1:00 a.m.

GNU Bash Environment Variable Command Injection Vulnerability

2014-09-2601:00:00
tools.cisco.com
92

10 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

9.8 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

0.976 High

EPSS

Percentile

100.0%

On September 24, 2014, a vulnerability in the Bash shell was publicly announced. The vulnerability is related to the way in which shell functions are passed though environment variables. The vulnerability may allow an attacker to inject commands into a Bash shell, depending on how the shell is invoked. The Bash shell may be invoked by a number of processes including, but not limited to, telnet, SSH, DHCP, and scripts hosted on web servers.
All versions of GNU Bash starting with version 1.14 are affected by this vulnerability and the specific impact is determined by the characteristics of the process using the Bash shell. In the worst case, an unauthenticated remote attacker would be able to execute commands on an affected server. However, in most cases involving Cisco products, authentication is required before exploitation could be attempted.

A number of Cisco products ship with or use an affected version of the Bash shell. The Bash shell is a third-party software component that is part of the GNU software project and used by a number of software vendors. As of this version of the Security Advisory, there have been a number of vulnerabilities recently discovered in the Bash shell, and the investigation is ongoing. For vulnerable products, Cisco has included information on the product versions that will contain the fixed software, and the date these versions are expected to be published on the cisco.com download page [“http://www.cisco.com/cisco/web/support/index.html#~shp_download”]. This advisory will be updated as additional information becomes available. Cisco may release free software updates that address this vulnerability if a product is determined to be affected by this vulnerability. This advisory is available at the following link:
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20140926-bash [“https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20140926-bash”]

Affected configurations

Vulners
Node
ciscoapplication_and_content_networking_system_softwareMatchany
OR
ciscosecure_access_control_systemMatchany
OR
ciscointrusion_prevention_systemMatchany
OR
ciscopgw_2200_softswitchMatchany
OR
ciscoprime_access_registrarMatchany
OR
ciscoemergency_responderMatchany
OR
ciscogss_4480_global_site_selectorMatchany
OR
ciscomds_9000_san-osMatchany
OR
cisconac_applianceMatchany
OR
ciscowide_area_application_servicesMatchany
OR
ciscounified_contact_center_enterpriseMatchany
OR
cisconetflow_collection_engineMatchany
OR
ciscoip_interoperability_and_collaboration_systemMatchany
OR
ciscoservice_control_engineMatchany
OR
ciscounity_connectionMatchany
OR
ciscotelepresence_managerMatchany
OR
cisconx_osMatch4.1
OR
cisconx_osMatch5.0
OR
cisconx_osMatch4.2
OR
cisconx_osMatch5.1
OR
cisconx_osMatch5.2
OR
cisconx_osMatch6.1
OR
cisconx_osMatch4.0(0)N1
OR
cisconx_osMatch4.0(1a)N1
OR
cisconx_osMatch4.0(1a)N2
OR
cisconx_osMatch4.1(2)E1
OR
cisconx_osMatch4.1(3)N1
OR
cisconx_osMatch4.1(3)N2
OR
cisconx_osMatch4.2(1)N1
OR
cisconx_osMatch4.2(1)N2
OR
cisconx_osMatch4.2(1)SV1
OR
cisconx_osMatch4.2(1)SV2
OR
cisconx_osMatch5.0(2)N1
OR
cisconx_osMatch5.0(2)N2
OR
cisconx_osMatch5.0(3)N1
OR
cisconx_osMatch5.0(3)N2
OR
cisconx_osMatch5.0(3)U1
OR
cisconx_osMatch5.0(3)U2
OR
cisconx_osMatch5.0(3)U3
OR
cisconx_osMatch5.0(3)U4
OR
cisconx_osMatch5.0(3)U5
OR
cisconx_osMatch5.1(3)N1
OR
cisconx_osMatch5.1(3)N2
OR
cisconx_osMatch5.2(1)N1
OR
cisconx_osMatch5.2(1)SM1
OR
cisconx_osMatch6.0
OR
cisconx_osMatch6.0(2)N1
OR
cisconx_osMatch6.0(2)N2
OR
cisconx_osMatch6.0(2)U1
OR
cisconx_osMatch6.0(2)U4
OR
cisconx_osMatch6.1(2)I2
OR
cisconx_osMatch6.2
OR
cisconx_osMatch7.0(0)N1
OR
cisconx_osMatch7.0(1)N1
OR
cisconx_osMatch7.0(2)N1
OR
cisconx_osMatch7.0(3)N1
OR
ciscoace_4700_series_application_control_engine_applianceMatchany
OR
ciscounified_communications_managerMatchany
OR
ciscophysical_access_gatewayMatchany
OR
ciscoios_xeMatch3.2SG
OR
ciscoios_xeMatch3.7S
OR
ciscoios_xeMatch3.3SG
OR
ciscoios_xeMatch3.8S
OR
ciscoios_xeMatch3.9S
OR
ciscoios_xeMatch3.2SE
OR
ciscoios_xeMatch3.3SE
OR
ciscoios_xeMatch3.3XO
OR
ciscoios_xeMatch3.4SG
OR
ciscoios_xeMatch3.5E
OR
ciscoios_xeMatch3.10S
OR
ciscoios_xeMatch3.11S
OR
ciscoios_xeMatch3.12S
OR
ciscoios_xeMatch3.13S
OR
ciscovideo_surveillance_media_serverMatchany
OR
ciscodigital_media_playerMatchany
OR
ciscodigital_media_managerMatchany
OR
cisconetwork_analysis_module_softwareMatchany
OR
ciscoironport_encryption_applianceMatchany
OR
cisconetwork_admission_controlMatchany
OR
ciscomedia_experience_engine_5600Matchany
OR
ciscoshow_and_shareMatchany
OR
ciscoidentity_services_engine_softwareMatchany
OR
ciscotelepresence_video_communication_serverMatchany
OR
ciscounified_computing_systemMatchany
OR
ciscobusiness_edition_3000_softwareMatchany
OR
ciscotelepresence_recording_serverMatchany
OR
ciscotelepresence_managerMatchany
OR
ciscotelepresence_multipoint_switchMatchany
OR
ciscoasa_cx_context-aware_security_softwareMatchany
OR
ciscoprime_security_managerMatchany
OR
ciscoprime_lan_management_solutionMatchany
OR
ciscoprime_network_control_systemMatchany
OR
ciscounified_communications_domain_managerMatchany
OR
ciscoprime_collaborationMatchany
OR
ciscoprime_infrastructureMatchany
OR
ciscowebex_node_for_mcsMatchany
OR
ciscounified_computing_systemMatchany
OR
ciscounified_computing_system_central_softwareMatchany
OR
ciscowebex_node_for_asr_1000_seriesMatchany
OR
ciscotelepresence_system_softwareMatchany
OR
ciscoenterprise_content_delivery_systemMatchany
OR
ciscotelepresence_te_softwareMatchany
OR
ciscovirtualization_experience_client_6000_series_firmwareMatchany
OR
ciscoasr_5000_series_softwareMatchany
OR
ciscovideoscape_distribution_suite_service_brokerMatchany
OR
ciscofinesseMatchany
OR
ciscosocialminerMatchany
OR
ciscomediasenseMatchany
OR
ciscotelepresence_tx9000Matchany
OR
ciscomedia_experience_engine_5600Matchany
OR
ciscoucs_directorMatchany
OR
ciscounified_intelligence_centerMatchany
OR
ciscouniversal_small_cell_series_firmwareMatchany
OR
ciscoprime_service_catalogMatchany
OR
cisconexus_1000v_switchMatchany
OR
cisco300_series_managed_switchesMatchany
OR
ciscoapplication_and_content_networking_system_softwareMatchany
OR
ciscosecure_access_control_systemMatchany
OR
ciscointrusion_prevention_systemMatchany
OR
ciscopgw_2200Match2200 Softswitch
OR
ciscoprime_access_registrarMatchany
OR
ciscoemergency_responderMatchany
OR
ciscogss_4480_global_site_selectorMatchany
OR
ciscomds_9000_san-osMatchany
OR
cisconac_applianceMatchany
OR
ciscowide_area_application_servicesMatchany
OR
ciscounified_contact_center_enterpriseMatchany
OR
cisconetflow_collection_engineMatchany
OR
ciscoip_interoperability_and_collaboration_systemMatchany
OR
ciscoservice_control_engineMatchany
OR
ciscounity_connectionMatchany
OR
ciscotelepresence_managerMatchany
OR
cisconx_osMatch4.1(2)
OR
cisconx_osMatch4.1(3)
OR
cisconx_osMatch4.1(4)
OR
cisconx_osMatch4.1(5)
OR
cisconx_osMatch5.0(2a)
OR
cisconx_osMatch5.0(3)
OR
cisconx_osMatch5.0(5)
OR
cisconx_osMatch4.2(2a)
OR
cisconx_osMatch4.2(3)
OR
cisconx_osMatch4.2(4)
OR
cisconx_osMatch4.2(6)
OR
cisconx_osMatch4.2(8)
OR
cisconx_osMatch5.1(1)
OR
cisconx_osMatch5.1(1a)
OR
cisconx_osMatch5.1(3)
OR
cisconx_osMatch5.1(4)
OR
cisconx_osMatch5.1(5)
OR
cisconx_osMatch5.1(6)
OR
cisconx_osMatch5.2(1)
OR
cisconx_osMatch5.2(3a)
OR
cisconx_osMatch5.2(4)
OR
cisconx_osMatch5.2(5)
OR
cisconx_osMatch5.2(7)
OR
cisconx_osMatch5.2(9)
OR
cisconx_osMatch6.1(1)
OR
cisconx_osMatch6.1(2)
OR
cisconx_osMatch6.1(3)
OR
cisconx_osMatch6.1(4)
OR
cisconx_osMatch6.1(4a)
OR
cisconx_osMatch4.0(0)N1(1a)
OR
cisconx_osMatch4.0(0)N1(2)
OR
cisconx_osMatch4.0(0)N1(2a)
OR
cisconx_osMatch4.0(1a)N1(1)
OR
cisconx_osMatch4.0(1a)N1(1a)
OR
cisconx_osMatch4.0(1a)N2(1)
OR
cisconx_osMatch4.0(1a)N2(1a)
OR
cisconx_osMatch4.1(2)E1(1)
OR
cisconx_osMatch4.1(2)E1(1b)
OR
cisconx_osMatch4.1(2)E1(1d)
OR
cisconx_osMatch4.1(2)E1(1e)
OR
cisconx_osMatch4.1(2)E1(1f)
OR
cisconx_osMatch4.1(2)E1(1g)
OR
cisconx_osMatch4.1(2)E1(1h)
OR
cisconx_osMatch4.1(2)E1(1i)
OR
cisconx_osMatch4.1(2)E1(1j)
OR
cisconx_osMatch4.1(3)N1(1)
OR
cisconx_osMatch4.1(3)N1(1a)
OR
cisconx_osMatch4.1(3)N2(1)
OR
cisconx_osMatch4.1(3)N2(1a)
OR
cisconx_osMatch4.2(1)N1(1)
OR
cisconx_osMatch4.2(1)N2(1)
OR
cisconx_osMatch4.2(1)N2(1a)
OR
cisconx_osMatch4.2(1)SV1(4)
OR
cisconx_osMatch4.2(1)SV1(4a)
OR
cisconx_osMatch4.2(1)SV1(4b)
OR
cisconx_osMatch4.2(1)SV1(5.1)
OR
cisconx_osMatch4.2(1)SV1(5.1a)
OR
cisconx_osMatch4.2(1)SV1(5.2)
OR
cisconx_osMatch4.2(1)SV1(5.2b)
OR
cisconx_osMatch4.2(1)SV2(1.1)
OR
cisconx_osMatch4.2(1)SV2(1.1a)
OR
cisconx_osMatch4.2(1)SV2(2.1)
OR
cisconx_osMatch4.2(1)SV2(2.1a)
OR
cisconx_osMatch5.0(2)N1(1)
OR
cisconx_osMatch5.0(2)N2(1)
OR
cisconx_osMatch5.0(2)N2(1a)
OR
cisconx_osMatch5.0(3)N1(1c)
OR
cisconx_osMatch5.0(3)N2(1)
OR
cisconx_osMatch5.0(3)N2(2)
OR
cisconx_osMatch5.0(3)N2(2a)
OR
cisconx_osMatch5.0(3)N2(2b)
OR
cisconx_osMatch5.0(3)U1(1)
OR
cisconx_osMatch5.0(3)U1(1a)
OR
cisconx_osMatch5.0(3)U1(1b)
OR
cisconx_osMatch5.0(3)U1(1d)
OR
cisconx_osMatch5.0(3)U1(2)
OR
cisconx_osMatch5.0(3)U1(2a)
OR
cisconx_osMatch5.0(3)U2(1)
OR
cisconx_osMatch5.0(3)U2(2)
OR
cisconx_osMatch5.0(3)U2(2a)
OR
cisconx_osMatch5.0(3)U2(2b)
OR
cisconx_osMatch5.0(3)U2(2c)
OR
cisconx_osMatch5.0(3)U2(2d)
OR
cisconx_osMatch5.0(3)U3(1)
OR
cisconx_osMatch5.0(3)U3(2)
OR
cisconx_osMatch5.0(3)U3(2a)
OR
cisconx_osMatch5.0(3)U3(2b)
OR
cisconx_osMatch5.0(3)U4(1)
OR
cisconx_osMatch5.0(3)U5(1)
OR
cisconx_osMatch5.0(3)U5(1a)
OR
cisconx_osMatch5.0(3)U5(1b)
OR
cisconx_osMatch5.0(3)U5(1c)
OR
cisconx_osMatch5.0(3)U5(1d)
OR
cisconx_osMatch5.0(3)U5(1e)
OR
cisconx_osMatch5.0(3)U5(1f)
OR
cisconx_osMatch5.0(3)U5(1g)
OR
cisconx_osMatch5.0(3)U5(1h)
OR
cisconx_osMatch5.1(3)N1(1)
OR
cisconx_osMatch5.1(3)N1(1a)
OR
cisconx_osMatch5.1(3)N2(1)
OR
cisconx_osMatch5.1(3)N2(1a)
OR
cisconx_osMatch5.1(3)N2(1b)
OR
cisconx_osMatch5.1(3)N2(1c)
OR
cisconx_osMatch5.2(1)N1(1)
OR
cisconx_osMatch5.2(1)N1(1a)
OR
cisconx_osMatch5.2(1)N1(1b)
OR
cisconx_osMatch5.2(1)N1(2)
OR
cisconx_osMatch5.2(1)N1(2a)
OR
cisconx_osMatch5.2(1)N1(3)
OR
cisconx_osMatch5.2(1)N1(4)
OR
cisconx_osMatch5.2(1)N1(5)
OR
cisconx_osMatch5.2(1)N1(6)
OR
cisconx_osMatch5.2(1)N1(7)
OR
cisconx_osMatch5.2(1)N1(8a)
OR
cisconx_osMatch5.2(1)N1(8)
OR
cisconx_osMatch5.2(1)SM1(5.1)
OR
cisconx_osMatch6.0(1)
OR
cisconx_osMatch6.0(2)
OR
cisconx_osMatch6.0(3)
OR
cisconx_osMatch6.0(4)
OR
cisconx_osMatch6.0(2)N1(1)
OR
cisconx_osMatch6.0(2)N1(2)
OR
cisconx_osMatch6.0(2)N1(2a)
OR
cisconx_osMatch6.0(2)N2(1)
OR
cisconx_osMatch6.0(2)N2(1b)
OR
cisconx_osMatch6.0(2)N2(2)
OR
cisconx_osMatch6.0(2)N2(3)
OR
cisconx_osMatch6.0(2)N2(4)
OR
cisconx_osMatch6.0(2)N2(5)
OR
cisconx_osMatch6.0(2)U1(1)
OR
cisconx_osMatch6.0(2)U1(2)
OR
cisconx_osMatch6.0(2)U1(1a)
OR
cisconx_osMatch6.0(2)U1(3)
OR
cisconx_osMatch6.0(2)U4(1)
OR
cisconx_osMatch6.1(2)I2(1)
OR
cisconx_osMatch6.1(2)I2(2)
OR
cisconx_osMatch6.1(2)I2(2a)
OR
cisconx_osMatch6.1(2)I2(3)
OR
cisconx_osMatch6.1(2)I2(2b)
OR
cisconx_osMatch6.2(2)
OR
cisconx_osMatch6.2(2a)
OR
cisconx_osMatch6.2(6)
OR
cisconx_osMatch7.0(0)N1(1)
OR
cisconx_osMatch7.0(1)N1(1)
OR
cisconx_osMatch7.0(2)N1(1)
OR
cisconx_osMatch7.0(3)N1(1)
OR
ciscoace_4710Match4700 Series Application Control Engine Appliances
OR
ciscounified_communications_managerMatchany
OR
ciscophysical_access_gatewayMatchany
OR
ciscoios_xeMatch3.2.0SG
OR
ciscoios_xeMatch3.2.1SG
OR
ciscoios_xeMatch3.2.2SG
OR
ciscoios_xeMatch3.2.3SG
OR
ciscoios_xeMatch3.2.4SG
OR
ciscoios_xeMatch3.2.5SG
OR
ciscoios_xeMatch3.7.0S
OR
ciscoios_xeMatch3.7.1S
OR
ciscoios_xeMatch3.7.2S
OR
ciscoios_xeMatch3.7.3S
OR
ciscoios_xeMatch3.7.4S
OR
ciscoios_xeMatch3.7.5S
OR
ciscoios_xeMatch3.7.6S
OR
ciscoios_xeMatch3.3.0SG
OR
ciscoios_xeMatch3.3.2SG
OR
ciscoios_xeMatch3.3.1SG
OR
ciscoios_xeMatch3.8.0S
OR
ciscoios_xeMatch3.8.1S
OR
ciscoios_xeMatch3.8.2S
OR
ciscoios_xeMatch3.9.1S
OR
ciscoios_xeMatch3.9.0S
OR
ciscoios_xeMatch3.9.2S
OR
ciscoios_xeMatch3.2.0SE
OR
ciscoios_xeMatch3.2.1SE
OR
ciscoios_xeMatch3.2.2SE
OR
ciscoios_xeMatch3.2.3SE
OR
ciscoios_xeMatch3.3.0SE
OR
ciscoios_xeMatch3.3.1SE
OR
ciscoios_xeMatch3.3.0XO
OR
ciscoios_xeMatch3.4.0SG
OR
ciscoios_xeMatch3.4.2SG
OR
ciscoios_xeMatch3.4.1SG
OR
ciscoios_xeMatch3.5.0E
OR
ciscoios_xeMatch3.10.0S
OR
ciscoios_xeMatch3.10.1S
OR
ciscoios_xeMatch3.10.2S
OR
ciscoios_xeMatch3.10.0aS
OR
ciscoios_xeMatch3.10.3S
OR
ciscoios_xeMatch3.10.4S
OR
ciscoios_xeMatch3.11.1S
OR
ciscoios_xeMatch3.11.2S
OR
ciscoios_xeMatch3.11.0S
OR
ciscoios_xeMatch3.12.0S
OR
ciscoios_xeMatch3.13.0S
OR
ciscovideo_surveillance_media_serverMatchany
OR
ciscodigital_media_playerMatchany
OR
ciscodigital_media_managerMatchany
OR
cisconetwork_analysis_module_softwareMatchany
OR
ciscoironport_encryption_applianceMatchany
OR
cisconetwork_admission_controlMatchany
OR
ciscocisco_iosMatch5600 Media Experience Engine
OR
ciscoshow_and_shareMatchany
OR
ciscoidentity_services_engine_softwareMatchany
OR
ciscotelepresence_video_communication_serverMatchany
OR
ciscounified_computing_systemMatchany
OR
ciscobusiness_edition_3000Match3000 Software
OR
ciscotelepresence_recording_serverMatchany
OR
ciscotelepresence_managerMatchany
OR
ciscotelepresence_multipoint_switchMatchany
OR
ciscoasa_cx_context-aware_security_softwareMatchany
OR
ciscoprime_security_managerMatchany
OR
ciscoprime_lan_management_solutionMatchany
OR
ciscoprime_network_control_systemMatchany
OR
ciscounified_communications_domain_managerMatchany
OR
ciscoprime_collaborationMatchany
OR
ciscoprime_infrastructureMatchany
OR
ciscowebex_node_for_mcsMatchany
OR
ciscounified_computing_systemMatchany
OR
ciscounified_computing_system_central_softwareMatchany
OR
ciscowebex_node_for_asr_1000_seriesMatch1000 Series
OR
ciscotelepresence_system_softwareMatchany
OR
ciscoenterprise_content_delivery_systemMatchany
OR
ciscotelepresence_te_softwareMatchany
OR
ciscovirtualization_experience_client_6000Match6000 Series Firmware
OR
ciscoasr_1001Match5000 Series Software
OR
ciscovideoscape_distribution_suite_service_brokerMatchany
OR
ciscofinesseMatchany
OR
ciscosocialminerMatchany
OR
ciscomediasenseMatchany
OR
ciscotelepresence_tx9000Matchany
OR
ciscocisco_iosMatch3500 (Media Experience Engine)
OR
ciscoucs_directorMatchany
OR
ciscounified_intelligence_centerMatchany
OR
ciscouniversal_small_cell_series_firmwareMatchany
OR
ciscoprime_service_catalogMatchany
OR
cisconexus_5000Match1000V Switch
OR
ciscoedge_340Match300 Series

10 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

9.8 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

0.976 High

EPSS

Percentile

100.0%